NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85458 | CVE-2017-5918 | The Banco de Costa Rica BCR Movil app 3.7 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-17 | View | |
85460 | CVE-2017-6024 | A Resource Exhaustion issue was discovered in Rockwell Automation ControlLogix 5580 controllers V28.011, V28.012, and V28.013; ControlLogix 5580 controllers V29.011; CompactLogix 5380 controllers V28.011; and CompactLogix 5380 controllers V29.011. This vulnerability may allow an attacker to cause a denial of service condition by sending a series of specific CIP-based commands to the controller. | 2 | 7.1 | High | 2017-05-27 | 2017-05-17 | View | |
85461 | CVE-2017-6029 | A Cross-Site Scripting issue was discovered in Certec EDV GmbH atvise scada prior to Version 3.0. This may allow remote code execution. | 2 | 3.5 | Low | 2017-05-27 | 2017-05-17 | View | |
85462 | CVE-2017-6031 | A Header Injection issue was discovered in Certec EDV GmbH atvise scada prior to Version 3.0. An improper neutralization of HTTP headers for scripting syntax issue has been identified, which may allow remote code execution. | 2 | 6.8 | Medium | 2017-05-27 | 2017-05-17 | View | |
85469 | CVE-2017-6557 | SQL injection vulnerability in ArrayOS before AG 9.4.0.135, when the portal bookmark function is enabled, allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors. | 2 | 6.5 | Medium | 2017-05-27 | 2017-05-17 | View |
Page 1654 of 17672, showing 5 records out of 88360 total, starting on record 8266, ending on 8270