NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
84519  CVE-2017-3507  Vulnerability in the Oracle Service Bus component of Oracle Fusion Middleware (subcomponent: Web Console Design). Supported versions that are affected are 12.1.3.0.0, 12.2.1.0.0, 12.2.1.1.0 and 12.2.1.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Service Bus. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Service Bus accessible data as well as unauthorized read access to a subset of Oracle Service Bus accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Service Bus. CVSS 3.0 Base Score 7.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L).    7.5  High  2017-07-18  2017-07-10  View
87079  CVE-2017-8551  An elevation of privilege vulnerability exists when Microsoft SharePoint software fails to properly sanitize a specially crafted requests, aka Microsoft SharePoint XSS vulnerability.    4.3  Medium  2017-07-18  2017-07-07  View
87335  CVE-2017-9775  Stack buffer overflow in GfxState.cc in pdftocairo in Poppler before 0.56 allows remote attackers to cause a denial of service (application crash) via a crafted PDF document.    4.3  Medium  2017-07-18  2017-06-29  View
87591  CVE-2017-1000054  Rocket.Chat version 0.8.0 and newer is vulnerable to XSS in the markdown link parsing code for messages.          2017-07-18  2017-07-17  View
87847  CVE-2017-11352  In ImageMagick before 7.0.5-10, a crafted RLE image can trigger a crash because of incorrect EOF handling in coders/rle.c. NOTE: this vulnerability exists because of an incomplete fix for CVE-2017-9144.          2017-07-18  2017-07-17  View

Page 16518 of 17672, showing 5 records out of 88360 total, starting on record 82586, ending on 82590

Actions