NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86710 | CVE-2017-9518 | atmail before 7.8.0.2 has CSRF, allowing an attacker to change the SMTP hostname and hijack all emails. | 2 | 6.8 | Medium | 2017-06-17 | 2017-06-13 | View | |
86966 | CVE-2017-6689 | A vulnerability in the ConfD CLI of Cisco Elastic Services Controllers could allow an authenticated, remote attacker to log in to an affected system as the admin user, aka an Insecure Default Administrator Credentials Vulnerability. More Information: CSCvc76661. Known Affected Releases: 2.2(9.76). | 2 | 6.5 | Medium | 2017-06-23 | 2017-06-20 | View | |
87222 | CVE-2016-8751 | Apache Ranger before 0.6.is vulnerable to a Stored Cross-Site Scripting in when entering custom policy conditions. Admin users can store some arbitrary javascript code to be executed when normal users login and access policies. | 2 | 3.5 | Low | 2017-06-23 | 2017-06-19 | View | |
87734 | CVE-2017-10921 | The grant-table feature in Xen through 4.8.x does not ensure sufficient type counts for a GNTMAP_device_map and GNTMAP_host_map mapping, which allows guest OS users to cause a denial of service (count mismanagement and memory corruption) or obtain privileged host OS access, aka XSA-224 bug 2. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
87990 | CVE-2017-4054 | Command Injection vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote authenticated users to execute a command of their choice via a crafted HTTP request parameter. | 2 | 6.5 | Medium | 2017-07-18 | 2017-07-17 | View |
Page 16883 of 17672, showing 5 records out of 88360 total, starting on record 84411, ending on 84415