NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
86510  CVE-2017-9305  lib/core/TikiFilter/PreventXss.php in Tiki Wiki CMS Groupware 16.2 allows remote attackers to bypass the XSS filter via padded zero characters, as demonstrated by an attack on tiki-batch_send_newsletter.php.    4.3  Medium  2017-06-12  2017-06-08  View
85743  CVE-2017-0373  The gen_class_pod implementation in lib/Config/Model/Utils/GenClassPod.pm in Config-Model (aka libconfig-model-perl) before 2.102 has a dangerous use lib line, which allows remote attackers to have an unspecified impact via a crafted Debian package file.    6.8  Medium  2017-06-12  2017-06-08  View
86511  CVE-2017-9306  inc/SP/Html/Html.class.php in sysPass 2.1.9 allows remote attackers to bypass the XSS filter, as demonstrated by use of an <svg/onload= substring instead of an <svg onload= substring.    4.3  Medium  2017-06-12  2017-06-09  View
85744  CVE-2017-0374  lib/Config/Model.pm in Config-Model (aka libconfig-model-perl) before 2.102 allows local users to gain privileges via a crafted model in the current working directory, related to use of . with the INC array.    4.6  Medium  2017-06-12  2017-06-08  View
86512  CVE-2017-9307  SSRF vulnerability in remotedownload.php in Allen Disk 1.6 allows remote authenticated users to conduct port scans and access intranet servers via a crafted file parameter.    Medium  2017-06-12  2017-06-09  View

Page 16176 of 17672, showing 5 records out of 88360 total, starting on record 80876, ending on 80880

Actions