NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
84924  CVE-2017-7691  A code injection vulnerability exists in SAP TREX / Business Warehouse Accelerator (BWA). The vendor response is SAP Security Note 2419592.    7.5  High  2017-04-27  2017-04-17  View
85180  CVE-2016-6337  MediaWiki 1.27.x before 1.27.1 might allow remote attackers to bypass intended session access restrictions by leveraging a call to the UserGetRights function after Session::getAllowedUserRights.    Medium  2017-04-27  2017-04-24  View
85181  CVE-2016-6338  ovirt-engine-webadmin, as used in Red Hat Enterprise Virtualization Manager (aka RHEV-M) for Servers and RHEV-M 4.0, allows physically proximate attackers to bypass a webadmin session timeout restriction via vectors related to UI selections, which trigger repeating queries.    4.6  Medium  2017-04-27  2017-04-25  View
84926  CVE-2017-7694  Remote Code Execution vulnerability in symphony/content/content.blueprintsdatasources.php in Symphony CMS through 2.6.11 allows remote attackers to execute code and get a webshell from the back-end. The attacker must be authenticated and enter PHP code in the datasource editor or event editor.    6.5  Medium  2017-04-27  2017-04-17  View
85182  CVE-2016-6341  oVirt Engine before 4.0.3 does not include DWH_DB_PASSWORD in the list of keys to hide in log files, which allows local users to obtain sensitive password information by reading engine log files.    2.1  Low  2017-04-27  2017-04-25  View

Page 15893 of 17672, showing 5 records out of 88360 total, starting on record 79461, ending on 79465

Actions