NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
84910  CVE-2017-7622  dde-daemon, the daemon process of DDE (Deepin Desktop Environment) 15.0 through 15.3, runs with root privileges and hardly does anything to identify the user who calls the function through D-Bus. Anybody can change the grub config, even to append some arguments to make a backdoor or privilege escalation, by calling DoWriteGrubSettings() provided by dde-daemon.    High  2017-04-27  2017-04-17  View
85422  CVE-2017-2151  Cross-site scripting vulnerability in Booking Calendar version 7.1 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2017-05-07  2017-05-05  View
85678  CVE-2017-0224  A remote code execution vulnerability exists in the way JavaScript engines render when handling objects in memory in Microsoft Edge, aka Scripting Engine Memory Corruption Vulnerability. This CVE ID is unique from CVE-2017-0228, CVE-2017-0229, CVE-2017-0230, CVE-2017-0234, CVE-2017-0235, CVE-2017-0236, and CVE-2017-0238.    7.6  High  2017-05-27  2017-05-23  View
85934  CVE-2017-5655  In Ambari 2.2.2 through 2.4.2 and Ambari 2.5.0, sensitive data may be stored on disk in temporary files on the Ambari Server host. The temporary files are readable by any user authenticated on the host.    Medium  2017-05-27  2017-05-22  View
86190  CVE-2017-9066  In WordPress before 4.7.5, there is insufficient redirect validation in the HTTP class, leading to SSRF.    Medium  2017-07-18  2017-07-17  View

Page 16820 of 17672, showing 5 records out of 88360 total, starting on record 84096, ending on 84100

Actions