NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83430 | CVE-2017-6570 | A SQL injection issue is exploitable, with WordPress admin access, in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects ./inc/campaign/view-campaign-list.php with the GET Parameter: id. | 2 | 6.5 | Medium | 2017-03-18 | 2017-03-13 | View | |
18150 | CVE-2016-1802 | CCCrypt in CommonCrypto in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1 mishandles return values during key-length calculations, which allows attackers to obtain sensitive information via a crafted app. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-30 | View | |
83686 | CVE-2017-1120 | IBM WebSphere Portal 8.5 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM Reference #: 2000152. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-11 | View | |
83942 | CVE-2016-10270 | LibTIFF 4.0.7 allows remote attackers to cause a denial of service (heap-based buffer over-read) or possibly have unspecified other impact via a crafted TIFF image, related to "READ of size 8" and libtiff/tif_read.c:523:22. | 2 | 6.8 | Medium | 2017-03-29 | 2017-03-27 | View | |
18918 | CVE-2016-2999 | IBM Connections 4.x through 4.5 CR5, 5.0 before CR4, and 5.5 before CR1 allows remote authenticated users to obtain sensitive information via an unspecified brute-force attack. | 2 | 4 | Medium | 2017-01-19 | 2016-11-28 | View |
Page 16765 of 17672, showing 5 records out of 88360 total, starting on record 83821, ending on 83825