NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86106 | CVE-2017-8868 | acp/core/files.browser.php in flatCore 1.4.7 allows file deletion via directory traversal in the delete parameter to acp/acp.php. The risk might be limited to requests submitted through CSRF. | 2 | 5 | Medium | 2017-05-27 | 2017-05-17 | View | |
85595 | CVE-2017-8788 | An issue was discovered on Accellion FTA devices before FTA_9_12_180. There is a CRLF vulnerability in settings_global_text_edit.php allowing ?display=x%0Dnewline attacks. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-17 | View | |
85596 | CVE-2017-8789 | An issue was discovered on Accellion FTA devices before FTA_9_12_180. A report_error.php?year='payload SQL injection vector exists. | 2 | 7.5 | High | 2017-05-27 | 2017-05-17 | View | |
86108 | CVE-2017-8874 | Multiple cross-site request forgery (CSRF) vulnerabilities in Mautic 1.4.1 allow remote attackers to hijack the authentication of users for requests that (1) delete email campaigns or (2) delete contacts. | 2 | 6.8 | Medium | 2017-05-27 | 2017-05-17 | View | |
85597 | CVE-2017-8790 | An issue was discovered on Accellion FTA devices before FTA_9_12_180. The home/seos/courier/ldaptest.html POST parameter filter can be used for LDAP Injection. | 2 | 7.5 | High | 2017-05-27 | 2017-05-17 | View |
Page 1650 of 17672, showing 5 records out of 88360 total, starting on record 8246, ending on 8250