NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
84823  CVE-2017-7389  Multiple Cross-Site Scripting (XSS) were discovered in 'openeclass Release_3.5.4'. The vulnerabilities exist due to insufficient filtration of user-supplied data (meeting_id, user) passed to the 'openeclass-master/modules/tc/webconf/webconf.php' URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.    4.3  Medium  2017-04-27  2017-04-05  View
85591  CVE-2017-8779  rpcbind through 0.2.4, LIBTIRPC through 1.0.1 and 1.0.2-rc through 1.0.2-rc3, and NTIRPC through 1.4.3 do not consider the maximum RPC data size during memory allocation for XDR strings, which allows remote attackers to cause a denial of service (memory consumption with no subsequent free) via a crafted UDP packet to port 111, aka rpcbomb.    7.8  High  2017-07-18  2017-07-07  View
85847  CVE-2017-2516  An issue was discovered in certain Apple products. macOS before 10.12.5 is affected. The issue involves the Kernel component. It allows attackers to bypass intended memory-read restrictions via a crafted app.    4.3  Medium  2017-07-18  2017-07-07  View
86103  CVE-2017-8857  In Veritas NetBackup 8.0 and earlier and NetBackup Appliance 3.0 and earlier, there is unauthenticated file copy and arbitrary remote command execution using the 'bprd' process.    10  High  2017-05-27  2017-05-15  View
86359  CVE-2016-4435  An endpoint of the Agent running on the BOSH Director VM with stemcell versions prior to 3232.6 and 3146.13 may allow unauthenticated clients to read or write blobs or cause a denial of service attack on the Director VM. This vulnerability requires that the unauthenticated clients guess or find a URL matching an existing GUID.    6.8  Medium  2017-06-12  2017-06-08  View

Page 16176 of 17672, showing 5 records out of 88360 total, starting on record 80876, ending on 80880

Actions