NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
86025  CVE-2017-7484  It was found that some selectivity estimation functions in PostgreSQL before 9.2.21, 9.3.x before 9.3.17, 9.4.x before 9.4.12, 9.5.x before 9.5.7, and 9.6.x before 9.6.3 did not check user privileges before providing information from pg_statistic, possibly leaking information. An unprivileged attacker could use this flaw to steal some information from tables they are otherwise not allowed to access.    Medium  2017-07-18  2017-07-07  View
86537  CVE-2017-9372  PJSIP, as used in Asterisk Open Source 13.x before 13.15.1 and 14.x before 14.4.1, Certified Asterisk 13.13 before 13.13-cert4, and other products, allows remote attackers to cause a denial of service (buffer overflow and application crash) via a SIP packet with a crafted CSeq header in conjunction with a Via header that lacks a branch parameter.    Medium  2017-07-18  2017-07-07  View
88073  CVE-2017-7315  An issue was discovered on Humax Digital HG100R 2.0.6 devices. To download the backup file it's not necessary to use credentials, and the router credentials are stored in plaintext inside the backup, aka GatewaySettings.bin.    10  High  2017-07-18  2017-07-07  View
86026  CVE-2017-7485  In PostgreSQL 9.3.x before 9.3.17, 9.4.x before 9.4.12, 9.5.x before 9.5.7, and 9.6.x before 9.6.3, it was found that the PGREQUIRESSL environment variable was no longer enforcing a SSL/TLS connection to a PostgreSQL server. An active Man-in-the-Middle attacker could use this flaw to strip the SSL/TLS protection from a connection between a client and a server.    4.3  Medium  2017-07-18  2017-07-07  View
88074  CVE-2017-7316  An issue was discovered on Humax Digital HG100R 2.0.6 devices. There is XSS on the 404 page.    4.3  Medium  2017-07-18  2017-07-07  View

Page 16386 of 17672, showing 5 records out of 88360 total, starting on record 81926, ending on 81930

Actions