NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 87714 | CVE-2017-10795 | Cross-site scripting (XSS) vulnerability in Subrion CMS 4.1.4 allows remote attackers to inject arbitrary web script or HTML via the body to blog/add/, a different vulnerability than CVE-2017-6069. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-05 | View | |
| 87970 | CVE-2017-2848 | In the web management interface in Foscam C1 Indoor HD cameras with application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary shell characters during manual network configuration resulting in command injection. An attacker can simply send an HTTP request to the device to trigger this vulnerability. | 2 | 6.5 | Medium | 2017-07-18 | 2017-07-05 | View | |
| 87971 | CVE-2017-2849 | In the web management interface in Foscam C1 Indoor HD cameras with application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary shell characters during NTP server configuration resulting in command injection. An attacker can simply send an HTTP request to the device to trigger this vulnerability. | 2 | 6.5 | Medium | 2017-07-18 | 2017-07-05 | View | |
| 87716 | CVE-2017-10798 | In ObjectPlanet Opinio before 7.6.4, there is XSS. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-05 | View | |
| 87972 | CVE-2017-2850 | In the web management interface in Foscam C1 Indoor HD cameras with application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary characters in the pureftpd.passwd file during a username change, which in turn allows for bypassing chroot restrictions in the FTP server. An attacker can simply send an HTTP request to the device to trigger this vulnerability. | 2 | 6.5 | Medium | 2017-07-18 | 2017-07-05 | View |
Page 16364 of 17672, showing 5 records out of 88360 total, starting on record 81816, ending on 81820