NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
85369  CVE-2017-1156  IBM WebSphere Portal 8.5 and 9.0 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL displayed to redirect a user to a malicious Web site that would appear to be trusted. This could allow the attacker to obtain highly sensitive information or conduct further attacks against the victim. IBM X-Force. ID: 122592    6.8  Medium  2017-07-18  2017-07-10  View
85881  CVE-2017-2793  An exploitable heap corruption vulnerability exists in the UnCompressUnicode functionality of Antenna House DMC HTMLFilter used by MarkLogic 8.0-6. A specially crafted xls file can cause a heap corruption resulting in arbitrary code execution. An attacker can send/provide malicious XLS file to trigger this vulnerability.    6.8  Medium  2017-06-03  2017-06-01  View
86137  CVE-2017-8926  Buffer overflow in Halliburton LogView Pro 10.0.1 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .tif file.    6.8  Medium  2017-05-27  2017-05-24  View
86393  CVE-2015-8995  In TrustZone an integer overflow vulnerability can potentially occur in all Android releases from CAF using the Linux kernel.    9.3  High  2017-07-18  2017-07-10  View
86649  CVE-2017-8835  SQL injection exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093. An attack vector is the bauth cookie to cgi-bin/MANGA/admin.cgi. One impact is enumeration of user accounts by observing whether a session ID can be retrieved from the sessions database.    7.5  High  2017-06-17  2017-06-12  View

Page 16409 of 17672, showing 5 records out of 88360 total, starting on record 82041, ending on 82045

Actions