NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
86106  CVE-2017-8868  acp/core/files.browser.php in flatCore 1.4.7 allows file deletion via directory traversal in the delete parameter to acp/acp.php. The risk might be limited to requests submitted through CSRF.    Medium  2017-05-27  2017-05-17  View
85595  CVE-2017-8788  An issue was discovered on Accellion FTA devices before FTA_9_12_180. There is a CRLF vulnerability in settings_global_text_edit.php allowing ?display=x%0Dnewline attacks.    4.3  Medium  2017-05-27  2017-05-17  View
85596  CVE-2017-8789  An issue was discovered on Accellion FTA devices before FTA_9_12_180. A report_error.php?year='payload SQL injection vector exists.    7.5  High  2017-05-27  2017-05-17  View
86108  CVE-2017-8874  Multiple cross-site request forgery (CSRF) vulnerabilities in Mautic 1.4.1 allow remote attackers to hijack the authentication of users for requests that (1) delete email campaigns or (2) delete contacts.    6.8  Medium  2017-05-27  2017-05-17  View
85597  CVE-2017-8790  An issue was discovered on Accellion FTA devices before FTA_9_12_180. The home/seos/courier/ldaptest.html POST parameter filter can be used for LDAP Injection.    7.5  High  2017-05-27  2017-05-17  View

Page 1650 of 17672, showing 5 records out of 88360 total, starting on record 8246, ending on 8250

Actions