NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
86108  CVE-2017-8874  Multiple cross-site request forgery (CSRF) vulnerabilities in Mautic 1.4.1 allow remote attackers to hijack the authentication of users for requests that (1) delete email campaigns or (2) delete contacts.    6.8  Medium  2017-05-27  2017-05-17  View
85597  CVE-2017-8790  An issue was discovered on Accellion FTA devices before FTA_9_12_180. The home/seos/courier/ldaptest.html POST parameter filter can be used for LDAP Injection.    7.5  High  2017-05-27  2017-05-17  View
85598  CVE-2017-8791  An issue was discovered on Accellion FTA devices before FTA_9_12_180. There is a home/seos/courier/login.html auth_params CRLF attack vector.    4.3  Medium  2017-05-27  2017-05-17  View
85599  CVE-2017-8792  An issue was discovered on Accellion FTA devices before FTA_9_12_180. There is XSS in home/seos/courier/user_add.html with the param parameter.    4.3  Medium  2017-05-27  2017-05-17  View
85600  CVE-2017-8793  An issue was discovered on Accellion FTA devices before FTA_9_12_180. By sending a POST request to home/seos/courier/web/wmProgressstat.html.php with an attacker domain in the acallow parameter, the device will respond with an Access-Control-Allow-Origin header allowing the attacker to have site access with a bypass of the Same Origin Policy.    6.8  Medium  2017-05-27  2017-05-17  View

Page 16019 of 17672, showing 5 records out of 88360 total, starting on record 80091, ending on 80095

Actions