NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
85033  CVE-2017-8071  drivers/hid/hid-cp2112.c in the Linux kernel 4.9.x before 4.9.9 uses a spinlock without considering that sleeping is possible in a USB HID request callback, which allows local users to cause a denial of service (deadlock) via unspecified vectors.    2.1  Low  2017-05-07  2017-04-28  View
85035  CVE-2017-8073  WeeChat before 1.7.1 allows a remote crash by sending a filename via DCC to the IRC plugin. This occurs in the irc_ctcp_dcc_filename_without_quotes function during quote removal, with a buffer overflow.    Medium  2017-05-07  2017-04-28  View
85042  CVE-2017-8085  In Exponent CMS before 2.4.1 Patch #5, XSS in elFinder is possible in framework/modules/file/connector/elfinder.php.    4.3  Medium  2017-05-07  2017-04-28  View
85044  CVE-2017-8099  There is CSRF in the WHIZZ plugin before 1.1.1 for WordPress, allowing attackers to delete any WordPress users and change the plugin's status via a GET request.    5.8  Medium  2017-05-07  2017-04-28  View
85047  CVE-2017-8102  Stored XSS in Serendipity v2.1-rc1 allows an attacker to steal an admin's cookie and other information by composing a new entry as an editor user. This is related to lack of the serendipity_event_xsstrust plugin and a set_config error in that plugin.    3.5  Low  2017-05-07  2017-04-28  View

Page 1734 of 17672, showing 5 records out of 88360 total, starting on record 8666, ending on 8670

Actions