NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
84910 | CVE-2017-7622 | dde-daemon, the daemon process of DDE (Deepin Desktop Environment) 15.0 through 15.3, runs with root privileges and hardly does anything to identify the user who calls the function through D-Bus. Anybody can change the grub config, even to append some arguments to make a backdoor or privilege escalation, by calling DoWriteGrubSettings() provided by dde-daemon. | 2 | 9 | High | 2017-04-27 | 2017-04-17 | View | |
85422 | CVE-2017-2151 | Cross-site scripting vulnerability in Booking Calendar version 7.1 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-05-07 | 2017-05-05 | View | |
85678 | CVE-2017-0224 | A remote code execution vulnerability exists in the way JavaScript engines render when handling objects in memory in Microsoft Edge, aka Scripting Engine Memory Corruption Vulnerability. This CVE ID is unique from CVE-2017-0228, CVE-2017-0229, CVE-2017-0230, CVE-2017-0234, CVE-2017-0235, CVE-2017-0236, and CVE-2017-0238. | 2 | 7.6 | High | 2017-05-27 | 2017-05-23 | View | |
85934 | CVE-2017-5655 | In Ambari 2.2.2 through 2.4.2 and Ambari 2.5.0, sensitive data may be stored on disk in temporary files on the Ambari Server host. The temporary files are readable by any user authenticated on the host. | 2 | 4 | Medium | 2017-05-27 | 2017-05-22 | View | |
86190 | CVE-2017-9066 | In WordPress before 4.7.5, there is insufficient redirect validation in the HTTP class, leading to SSRF. | 2 | 5 | Medium | 2017-07-18 | 2017-07-17 | View |
Page 16820 of 17672, showing 5 records out of 88360 total, starting on record 84096, ending on 84100