NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
84725  CVE-2017-6088  Multiple SQL injection vulnerabilities in EyesOfNetwork (aka EON) 5.0 and earlier allow remote authenticated users to execute arbitrary SQL commands via the (1) bp_name, (2) display, (3) search, or (4) equipment parameter to module/monitoring_ged/ged_functions.php or the (5) type parameter to monitoring_ged/ajax.php.    High  2017-05-27  2017-05-23  View
19445  CVE-2016-3653  Multiple cross-site request forgery (CSRF) vulnerabilities in management scripts in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6 MP5 allow remote authenticated users to hijack the authentication of arbitrary users.    Medium  2017-01-19  2016-07-01  View
84981  CVE-2017-7892  Sandstorm Cap'n Proto before 0.5.3.1 allows remote crashes related to a compiler optimization. A remote attacker can trigger a segfault in a 32-bit libcapnp application because Cap'n Proto relies on pointer arithmetic calculations that overflow. An example compiler with optimization that elides a bounds check in such calculations is Apple LLVM version 8.1.0 (clang-802.0.41). The attack vector is a crafted far pointer within a message.    Medium  2017-04-27  2017-04-25  View
19701  CVE-2016-3969  Cross-site scripting (XSS) vulnerability in McAfee Email Gateway (MEG) 7.6.x before 7.6.404, when File Filtering is enabled with the action set to ESERVICES:REPLACE, allows remote attackers to inject arbitrary web script or HTML via an attachment in a blocked email.    4.3  Medium  2017-01-19  2016-05-19  View
85237  CVE-2015-1838  modules/serverdensity_device.py in SaltStack before 2014.7.4 does not properly handle files in /tmp.    4.6  Medium  2017-04-27  2017-04-19  View

Page 16956 of 17672, showing 5 records out of 88360 total, starting on record 84776, ending on 84780

Actions