NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
85379  CVE-2017-2097  Cross-site request forgery (CSRF) vulnerability in Knowledge versions prior to v1.7.0 allows remote attackers to hijack the authentication of administrators via unspecified vectors.    6.8  Medium  2017-05-27  2017-05-09  View
85388  CVE-2017-2106  Multiple cross-site scripting vulnerabilities in Webmin versions prior to 1.830 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2017-05-27  2017-05-09  View
85225  CVE-2017-7415  Atlassian Confluence 6.x before 6.0.7 allows remote attackers to bypass authentication and read any blog or page via the drafts diff REST resource.    Medium  2017-05-27  2017-05-09  View
85498  CVE-2017-7957  XStream through 1.4.9, when a certain denyTypes workaround is not used, mishandles attempts to create an instance of the primitive type 'void' during unmarshalling, leading to a remote application crash, as demonstrated by an xstream.fromXML(<void/>) call.    Medium  2017-05-27  2017-05-09  View
84987  CVE-2017-7941  The ReadSGIImage function in sgi.c in ImageMagick 7.0.5-4 allows remote attackers to consume an amount of available memory via a crafted file.    4.3  Medium  2017-05-27  2017-05-09  View

Page 15984 of 17672, showing 5 records out of 88360 total, starting on record 79916, ending on 79920

Actions