NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83763  CVE-2017-6069  Subrion CMS 4.0.5 has CSRF in admin/blog/add/. The attacker can add any tag, and can optionally insert XSS via the tags parameter.    6.8  Medium  2017-04-27  2017-03-30  View
84275  CVE-2017-2397  An issue was discovered in certain Apple products. iOS before 10.3 is affected. The issue involves the Accounts component. It allows physically proximate attackers to discover an Apple ID by reading an iCloud authentication prompt on the lock screen.    2.1  Low  2017-07-18  2017-07-11  View
84531  CVE-2017-3519  Vulnerability in the PeopleSoft Enterprise PeopleTools component of Oracle PeopleSoft Products (subcomponent: Security). Supported versions that are affected are 8.54 and 8.55. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all PeopleSoft Enterprise PeopleTools accessible data. CVSS 3.0 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N).    7.8  High  2017-07-18  2017-07-10  View
84787  CVE-2017-7283  An authenticated user of Unitrends Enterprise Backup before 9.1.2 can execute arbitrary OS commands by sending a specially crafted filename to the /api/restore/download-files endpoint, related to the downloadFiles function in api/includes/restore.php.    High  2017-04-27  2017-04-24  View
85043  CVE-2017-8098  e107 2.1.4 is vulnerable to cross-site request forgery in plugin-installing, meta-changing, and settings-changing. A malicious web page can use forged requests to make e107 download and install a plug-in provided by the attacker.    4.3  Medium  2017-05-07  2017-04-29  View

Page 15898 of 17672, showing 5 records out of 88360 total, starting on record 79486, ending on 79490

Actions