NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
85351  CVE-2016-8716  An exploitable Cleartext Transmission of Password vulnerability exists in the Web Application functionality of Moxa AWK-3131A Wireless Access Point running firmware 1.1. The Change Password functionality of the Web Application transmits the password in cleartext. An attacker capable of intercepting this traffic is able to obtain valid credentials.    3.3  Low  2017-04-27  2017-04-20  View
84840  CVE-2017-7412  NixOS 17.03 before 17.03.887 has a world-writable Docker socket, which allows local users to gain privileges by executing docker commands.    7.2  High  2017-04-27  2017-04-11  View
85096  CVE-2015-8958  coders/sun.c in ImageMagick before 6.9.0-4 Beta allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted SUN file.    4.3  Medium  2017-04-27  2017-04-25  View
85352  CVE-2016-8718  An exploitable Cross-Site Request Forgery vulnerability exists in the Web Application functionality of Moxa AWK-3131A Wireless Access Point running firmware 1.1. A specially crafted form can trick a client into making an unintentional request to the web server which will be treated as an authentic request.    6.8  Medium  2017-04-27  2017-04-20  View
83817  CVE-2017-7200  An SSRF issue was discovered in OpenStack Glance before Newton. The 'copy_from' feature in the Image Service API v1 allowed an attacker to perform masked network port scans. With v1, it is possible to create images with a URL such as 'http://localhost:22'. This could then allow an attacker to enumerate internal network details while appearing masked, since the scan would appear to originate from the Glance Image service.    Medium  2017-04-27  2017-03-30  View

Page 15849 of 17672, showing 5 records out of 88360 total, starting on record 79241, ending on 79245

Actions