NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
88122 | CVE-2017-8116 | The management interface for the Teltonika RUT9XX routers (aka LuCI) with firmware 00.03.265 and earlier allows remote attackers to execute arbitrary commands with root privileges via shell metacharacters in the username parameter in a login request. | 2017-07-18 | 2017-07-03 | View | ||||
87371 | CVE-2017-2843 | In the web management interface in Foscam C1 Indoor HD Camera running application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary data in the msmtprc configuration file resulting in command execution. An attacker can simply send an HTTP request to the device to trigger this vulnerability. | 2 | 7.5 | High | 2017-07-18 | 2017-07-03 | View | |
87627 | CVE-2017-10667 | In index.php in Zen Cart 1.6.0, the products_id parameter can cause XSS. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-03 | View | |
88139 | CVE-2017-8554 | The kernel in Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an authenticated attacker to obtain memory contents via a specially crafted application. | 2 | 1.9 | Low | 2017-07-18 | 2017-07-03 | View | |
87631 | CVE-2017-10671 | Heap-based Buffer Overflow in the de_dotdot function in libhttpd.c in sthttpd before 2.27.1 allows remote attackers to cause a denial of service (daemon crash) or possibly have unspecified other impact via a crafted filename. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-03 | View |
Page 16347 of 17672, showing 5 records out of 88360 total, starting on record 81731, ending on 81735