NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
87620 | CVE-2017-1000381 | The c-ares function `ares_parse_naptr_reply()`, which is used for parsing NAPTR responses, could be triggered to read memory outside of the given input buffer if the passed in DNS response packet was crafted in a particular way. | 2 | 5 | Medium | 2017-07-18 | 2017-07-17 | View | |
87876 | CVE-2017-1217 | IBM WebSphere Portal 8.5 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 123857 | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
88132 | CVE-2017-8443 | In Kibana X-Pack security versions prior to 5.4.3 if a Kibana user opens a crafted Kibana URL the result could be a redirect to an improperly initialized Kibana login screen. If the user enters credentials on this screen, the credentials will appear in the URL bar. The credentials could then be viewed by untrusted parties or logged into the Kibana access logs. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-06 | View | |
66117 | CVE-2005-0356 | Multiple TCP implementations with Protection Against Wrapped Sequence Numbers (PAWS) with the timestamps option enabled allow remote attackers to cause a denial of service (connection loss) via a spoofed packet with a large timer value, which causes the host to discard later packets because they appear to be too old. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
66629 | CVE-2005-0879 | PHP remote file include vulnerability in (1) content.php and (2) index.php for Vortex Portal allows remote attackers to execute arbitrary PHP code via a URL in the act parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 16674 of 17672, showing 5 records out of 88360 total, starting on record 83366, ending on 83370