NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85379 | CVE-2017-2097 | Cross-site request forgery (CSRF) vulnerability in Knowledge versions prior to v1.7.0 allows remote attackers to hijack the authentication of administrators via unspecified vectors. | 2 | 6.8 | Medium | 2017-05-27 | 2017-05-09 | View | |
85388 | CVE-2017-2106 | Multiple cross-site scripting vulnerabilities in Webmin versions prior to 1.830 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-09 | View | |
85225 | CVE-2017-7415 | Atlassian Confluence 6.x before 6.0.7 allows remote attackers to bypass authentication and read any blog or page via the drafts diff REST resource. | 2 | 5 | Medium | 2017-05-27 | 2017-05-09 | View | |
85498 | CVE-2017-7957 | XStream through 1.4.9, when a certain denyTypes workaround is not used, mishandles attempts to create an instance of the primitive type 'void' during unmarshalling, leading to a remote application crash, as demonstrated by an xstream.fromXML(<void/>) call. | 2 | 5 | Medium | 2017-05-27 | 2017-05-09 | View | |
84987 | CVE-2017-7941 | The ReadSGIImage function in sgi.c in ImageMagick 7.0.5-4 allows remote attackers to consume an amount of available memory via a crafted file. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-09 | View |
Page 15984 of 17672, showing 5 records out of 88360 total, starting on record 79916, ending on 79920