NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83866 | CVE-2017-7297 | Rancher Labs rancher server 1.2.0+ is vulnerable to authenticated users disabling access control via an API call. This is fixed in versions rancher/server:v1.2.4, rancher/server:v1.3.5, rancher/server:v1.4.3, and rancher/server:v1.5.3. | 2 | 6.5 | Medium | 2017-04-27 | 2017-04-04 | View | |
83867 | CVE-2017-7298 | In Moodle 3.2.2+, there is XSS in the Course summary filter of the Add a new course page, as demonstrated by a crafted attribute of an SVG element. | 2 | 3.5 | Low | 2017-04-27 | 2017-03-30 | View | |
83868 | CVE-2009-5147 | DL::dlopen in Ruby 1.8, 1.9.0, 1.9.2, 1.9.3, 2.0.0 before patchlevel 648, and 2.1 before 2.1.8 opens libraries with tainted names. | 2017-03-29 | 2017-03-29 | View | ||||
83869 | CVE-2013-6446 | The JobHistory Server in Cloudera CDH 4.x before 4.6.0 and 5.x before 5.0.0 Beta 2, when using MRv2/YARN with HTTP authentication, allows remote authenticated users to obtain sensitive job information by leveraging failure to enforce job ACLs. | 2 | 3.5 | Low | 2017-03-29 | 2017-03-28 | View | |
83870 | CVE-2014-0229 | Apache Hadoop 0.23.x before 0.23.11 and 2.x before 2.4.1, as used in Cloudera CDH 5.0.x before 5.0.2, do not check authorization for the (1) refreshNamenodes, (2) deleteBlockPool, and (3) shutdownDatanode HDFS admin commands, which allows remote authenticated users to cause a denial of service (DataNodes shutdown) or perform unnecessary operations by issuing a command. | 2 | 4 | Medium | 2017-03-29 | 2017-03-28 | View |
Page 16774 of 17672, showing 5 records out of 88360 total, starting on record 83866, ending on 83870