NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86510 | CVE-2017-9305 | lib/core/TikiFilter/PreventXss.php in Tiki Wiki CMS Groupware 16.2 allows remote attackers to bypass the XSS filter via padded zero characters, as demonstrated by an attack on tiki-batch_send_newsletter.php. | 2 | 4.3 | Medium | 2017-06-12 | 2017-06-08 | View | |
85743 | CVE-2017-0373 | The gen_class_pod implementation in lib/Config/Model/Utils/GenClassPod.pm in Config-Model (aka libconfig-model-perl) before 2.102 has a dangerous use lib line, which allows remote attackers to have an unspecified impact via a crafted Debian package file. | 2 | 6.8 | Medium | 2017-06-12 | 2017-06-08 | View | |
86511 | CVE-2017-9306 | inc/SP/Html/Html.class.php in sysPass 2.1.9 allows remote attackers to bypass the XSS filter, as demonstrated by use of an <svg/onload= substring instead of an <svg onload= substring. | 2 | 4.3 | Medium | 2017-06-12 | 2017-06-09 | View | |
85744 | CVE-2017-0374 | lib/Config/Model.pm in Config-Model (aka libconfig-model-perl) before 2.102 allows local users to gain privileges via a crafted model in the current working directory, related to use of . with the INC array. | 2 | 4.6 | Medium | 2017-06-12 | 2017-06-08 | View | |
86512 | CVE-2017-9307 | SSRF vulnerability in remotedownload.php in Allen Disk 1.6 allows remote authenticated users to conduct port scans and access intranet servers via a crafted file parameter. | 2 | 4 | Medium | 2017-06-12 | 2017-06-09 | View |
Page 16176 of 17672, showing 5 records out of 88360 total, starting on record 80876, ending on 80880