NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
87307  CVE-2017-9424  IdeaBlade Breeze Breeze.Server.NET before 1.6.5 allows remote attackers to execute arbitrary code, related to use of TypeNameHandling in JSON deserialization.    7.5  High  2017-07-18  2017-06-30  View
87563  CVE-2017-1000024  Shotwell version 0.24.4 or earlier and 0.25.3 or earlier is vulnerable to a information disclosure in the web publishing plugins resulting in potential password and oauth token plaintext transmission          2017-07-18  2017-07-17  View
87819  CVE-2017-11193  Pulse Connect Secure 8.3R1 has CSRF in diag.cgi. In the panel, the diag.cgi file is responsible for running commands such as ping, ping6, traceroute, traceroute6, nslookup, arp, and Portprobe. These functions do not have any protections against CSRF. That can allow an attacker to run these commands against any IP if they can get an admin to visit their malicious CSRF page.    6.8  Medium  2017-07-18  2017-07-17  View
88075  CVE-2017-7317  An issue was discovered on Humax Digital HG100 2.0.6 devices. The attacker can find the root credentials in the backup file, aka GatewaySettings.bin.    10  High  2017-07-18  2017-07-07  View
88331  CVE-2017-10962  REDCap before 7.5.1 has XSS via the query string.          2017-07-18  2017-07-18  View

Page 16362 of 17672, showing 5 records out of 88360 total, starting on record 81806, ending on 81810

Actions