NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
87845  CVE-2017-11348  In Octopus Deploy 3.x before 3.15.4, an authenticated user with PackagePush permission to upload packages could upload a maliciously crafted NuGet package, potentially overwriting other packages or modifying system files. This is a directory traversal in the PackageId value.          2017-07-18  2017-07-17  View
88101  CVE-2017-7729  On iSmartAlarm cube devices, there is Incorrect Access Control because a new key is transmitted in cleartext.    Medium  2017-07-18  2017-07-13  View
88357  CVE-2016-9196  A vulnerability in login authentication management in Cisco Aironet 1800, 2800, and 3800 Series Access Point platforms could allow an authenticated, local attacker to gain unrestricted root access to the underlying Linux operating system. The root Linux shell is provided for advanced troubleshooting and should not be available to individual users, even those with root privileges. The attacker must have the root password to exploit this vulnerability. More Information: CSCvb13893. Known Affected Releases: 8.2(121.0) 8.3(102.0). Known Fixed Releases: 8.4(1.53) 8.4(1.52) 8.3(111.0) 8.3(104.23) 8.2(130.0) 8.2(124.1).    7.2  High  2017-07-18  2017-07-11  View
66086  CVE-2005-0323  Cross-site scripting (XSS) vulnerability in Infinite Mobile Delivery Webmail 2.6 allows remote attackers to inject arbitrary web script or HTML via the URL.    4.3  Medium  2017-07-18  2017-07-10  View
66598  CVE-2005-0848  Multiple games developed by FUN labs, including 4X4 Off-road Adventure III, Big Game Hunter, Dangerous Hunts, Deer Hunt, Revolution, Secret Service, Shadow Force, and US Most Wanted, allow remote attackers to cause a denial of service via an empty UDP packet to the server, which cannot detect that a new packet has arrived using the socket ioctl.    Medium  2017-07-18  2017-07-10  View

Page 16507 of 17672, showing 5 records out of 88360 total, starting on record 82531, ending on 82535

Actions