NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
85960  CVE-2017-6636  A vulnerability in the web interface of Cisco Prime Collaboration Provisioning Software (prior to Release 11.1) could allow an authenticated, remote attacker to view any file on an affected system. The vulnerability exists because the affected software does not perform proper input validation of HTTP requests and fails to apply role-based access controls (RBACs) to requested HTTP URLs. An attacker could exploit this vulnerability by sending a crafted HTTP request that uses directory traversal techniques to submit a path to a desired file location on an affected system. A successful exploit could allow the attacker to view any file on the system. Cisco Bug IDs: CSCvc99604.    Medium  2017-07-18  2017-07-07  View
86216  CVE-2017-9113  In OpenEXR 2.2.0, an invalid write of size 1 in the bufferedReadPixels function in ImfInputFile.cpp could cause the application to crash or execute arbitrary code.    4.3  Medium  2017-06-03  2017-06-01  View
86472  CVE-2017-7494  Samba since version 3.5.0 is vulnerable to remote code execution vulnerability, allowing a malicious client to upload a shared library to a writable share, and then cause the server to load and execute it.    10  High  2017-07-18  2017-07-07  View
86728  CVE-2014-8180  MongoDB on Red Hat Satellite 6 allows local users to bypass authentication by logging in with an empty password and delete information which can cause a Denial of Service.    2.1  Low  2017-06-18  2017-06-14  View
86984  CVE-2017-7372  In all Android releases from CAF using the Linux kernel, a race condition exists in a video driver potentially leading to buffer overflow or write to arbitrary pointer location.    7.6  High  2017-07-18  2017-07-07  View

Page 17023 of 17672, showing 5 records out of 88360 total, starting on record 85111, ending on 85115

Actions