NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
84733 | CVE-2017-6338 | Multiple Access Control issues in Trend Micro InterScan Web Security Virtual Appliance (IWSVA) 6.5 before CP 1746 allow an authenticated, remote user with low privileges like 'Reports Only' or 'Auditor' to change FTP Access Control Settings, create or modify reports, or upload an HTTPS Decryption Certificate and Private Key. | 2 | 4 | Medium | 2017-04-27 | 2017-04-11 | View | |
19453 | CVE-2016-3670 | Cross-site scripting (XSS) vulnerability in users.jsp in the Profile Search functionality in Liferay before 7.0.0 CE RC1 allows remote attackers to inject arbitrary web script or HTML via the FirstName field. | 2 | 4.3 | Medium | 2017-01-19 | 2016-06-20 | View | |
84989 | CVE-2017-7943 | The ReadSVGImage function in svg.c in ImageMagick 7.0.5-4 allows remote attackers to consume an amount of available memory via a crafted file. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-09 | View | |
19709 | CVE-2016-3978 | The Web User Interface (WebUI) in FortiOS 5.0.x before 5.0.13, 5.2.x before 5.2.3, and 5.4.x before 5.4.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks or cross-site scripting (XSS) attacks via the "redirect" parameter to "login." | 2 | 4.3 | Medium | 2017-01-19 | 2016-04-14 | View | |
85245 | CVE-2015-7563 | Cross-site request forgery (CSRF) vulnerability in TeamPass 2.1.24 and earlier allows remote attackers to hijack the authentication of an authenticated user. | 2 | 6.8 | Medium | 2017-04-27 | 2017-04-20 | View |
Page 17149 of 17672, showing 5 records out of 88360 total, starting on record 85741, ending on 85745