NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
82988 | CVE-2017-0080 | The kernel-mode drivers in Microsoft Windows 10 Gold, 1511, and 1607 and Windows Server 2016 allow local users to gain privileges via a crafted application, aka Win32k Elevation of Privilege Vulnerability. This vulnerability is different from those described in CVE-2017-0024, CVE-2017-0026, CVE-2017-0056, CVE-2017-0078, CVE-2017-0079, CVE-2017-0081, and CVE-2017-0082. | 2 | 7.2 | High | 2017-07-18 | 2017-07-11 | View | |
83244 | CVE-2017-5833 | Cross-site scripting (XSS) vulnerability in the invocation code generation for interstitial zones in Revive Adserver before 4.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters. | 2 | 4.3 | Medium | 2017-03-18 | 2017-03-06 | View | |
83500 | CVE-2017-6955 | An issue was discovered in by-email/by-email.php in the Invite Anyone plugin before 1.3.15 for WordPress. A user is able to change the subject and the body of the invitation mail that should be immutable, which facilitates a social engineering attack. | 2 | 5 | Medium | 2017-03-29 | 2017-03-21 | View | |
83756 | CVE-2017-6003 | dotCMS 3.7.0 has XSS reachable from ext/languages_manager/edit_language in portal/layout via the bottom two form fields. | 2 | 4.3 | Medium | 2017-03-29 | 2017-03-28 | View | |
84268 | CVE-2017-2390 | An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS before 10.2 is affected. watchOS before 3.2 is affected. The issue involves symlink mishandling in the libarchive component. It allows local users to change arbitrary directory permissions via unspecified vectors. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-11 | View |
Page 15842 of 17672, showing 5 records out of 88360 total, starting on record 79206, ending on 79210