NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83309  CVE-2017-6367  In Cerberus FTP Server 8.0.10.1, a crafted HTTP request causes the Windows service to crash. The attack methodology involves a long Host header and an invalid Content-Length header.    Medium  2017-03-18  2017-03-16  View
83773  CVE-2017-6369  Insufficient checks in the UDF subsystem in Firebird 2.5.x before 2.5.7 and 3.0.x before 3.0.2 allow remote authenticated users to execute code by using a 'system' entrypoint from fbudf.so.    6.5  Medium  2017-03-29  2017-03-28  View
83310  CVE-2017-6370  TYPO3 7.6.15 sends an http request to an index.php?loginProvider URI in cases with an https Referer, which allows remote attackers to obtain sensitive cleartext information by sniffing the network and reading the userident and username fields.    Medium  2017-03-29  2017-03-27  View
83311  CVE-2017-6377  When adding a private file via the editor in Drupal 8.2.x before 8.2.7, the editor will not correctly check access for the file being attached, resulting in an access bypass.    Medium  2017-07-18  2017-07-11  View
83312  CVE-2017-6379  Some administrative paths in Drupal 8.2.x before 8.2.7 did not include protection for CSRF. This would allow an attacker to disable some blocks on a site. This issue is mitigated by the fact that users would have to know the block ID.    5.1  Medium  2017-07-18  2017-07-11  View

Page 17286 of 17672, showing 5 records out of 88360 total, starting on record 86426, ending on 86430

Actions