NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85937 | CVE-2017-5870 | Multiple cross-site scripting (XSS) vulnerabilities in ViMbAdmin 3.0.15 allow remote attackers to inject arbitrary web script or HTML via the (1) domain or (2) transport parameter to domain/add; the (3) name parameter to mailbox/add/did/<domain id>; the (4) goto parameter to alias/add/did/<domain id>; or the (5) captchatext parameter to auth/lost-password. | 2 | 3.5 | Low | 2017-06-03 | 2017-06-01 | View | |
86193 | CVE-2017-9069 | In MODX Revolution before 2.5.7, a user with file upload permissions is able to execute arbitrary code by uploading a file with the name .htaccess. | 2 | 6.5 | Medium | 2017-06-03 | 2017-05-30 | View | |
86449 | CVE-2016-9735 | IBM Jazz Foundation could allow an authenticated user to obtain sensitive information from stack traces. IBM X-Force ID: 119781, | 2 | 4 | Medium | 2017-05-27 | 2017-05-23 | View | |
86705 | CVE-2017-9499 | In ImageMagick 7.0.5-7 Q16, an assertion failure was found in the function SetPixelChannelAttributes, which allows attackers to cause a denial of service via a crafted file. | 2 | 4.3 | Medium | 2017-06-17 | 2017-06-12 | View | |
86961 | CVE-2017-6684 | A vulnerability in Cisco Elastic Services Controllers could allow an authenticated, remote attacker to log in to an affected system as the Linux admin user, aka an Insecure Default Credentials Vulnerability. More Information: CSCvc76651. Known Affected Releases: 21.0.0. | 2 | 9 | High | 2017-06-23 | 2017-06-21 | View |
Page 1594 of 17672, showing 5 records out of 88360 total, starting on record 7966, ending on 7970