NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83309 | CVE-2017-6367 | In Cerberus FTP Server 8.0.10.1, a crafted HTTP request causes the Windows service to crash. The attack methodology involves a long Host header and an invalid Content-Length header. | 2 | 5 | Medium | 2017-03-18 | 2017-03-16 | View | |
83773 | CVE-2017-6369 | Insufficient checks in the UDF subsystem in Firebird 2.5.x before 2.5.7 and 3.0.x before 3.0.2 allow remote authenticated users to execute code by using a 'system' entrypoint from fbudf.so. | 2 | 6.5 | Medium | 2017-03-29 | 2017-03-28 | View | |
83310 | CVE-2017-6370 | TYPO3 7.6.15 sends an http request to an index.php?loginProvider URI in cases with an https Referer, which allows remote attackers to obtain sensitive cleartext information by sniffing the network and reading the userident and username fields. | 2 | 5 | Medium | 2017-03-29 | 2017-03-27 | View | |
83311 | CVE-2017-6377 | When adding a private file via the editor in Drupal 8.2.x before 8.2.7, the editor will not correctly check access for the file being attached, resulting in an access bypass. | 2 | 5 | Medium | 2017-07-18 | 2017-07-11 | View | |
83312 | CVE-2017-6379 | Some administrative paths in Drupal 8.2.x before 8.2.7 did not include protection for CSRF. This would allow an attacker to disable some blocks on a site. This issue is mitigated by the fact that users would have to know the block ID. | 2 | 5.1 | Medium | 2017-07-18 | 2017-07-11 | View |
Page 17286 of 17672, showing 5 records out of 88360 total, starting on record 86426, ending on 86430