NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
84220  CVE-2017-1149  IBM UrbanCode Deploy (UCD) 6.0, 6.1, and 6.2 is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerability to expose highly sensitive information or consume all available memory resources. IBM X-Force ID: 122202.    7.5  High  2017-05-07  2017-05-05  View
84990  CVE-2017-7944  XOOPS Core 2.5.8.1 has XSS due to unescaped HTML output of an Install DB failure error message in page_dbsettings.php.    4.3  Medium  2017-05-07  2017-04-27  View
84224  CVE-2017-1161  IBM API Connect 5.0.6.0 could allow a remote attacker to execute arbitrary commands on the system, caused by improper validation of URLs for the Developer Portal. By crafting a malicious URL, an attacker could exploit this vulnerability to execute arbitrary commands on the system with the privileges of the www-data user. IBM X-Force ID: 122956.    7.5  High  2017-04-27  2017-04-25  View
84736  CVE-2017-6412  In Sophos Web Appliance (SWA) before 4.3.1.2, Session Fixation could occur, aka NSWA-1310.    6.8  Medium  2017-04-27  2017-04-14  View
84992  CVE-2017-7948  Integer overflow in the mark_curve function in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (out-of-bounds write and application crash) or possibly have unspecified other impact via a crafted PostScript document.    6.8  Medium  2017-04-27  2017-04-25  View

Page 1745 of 17672, showing 5 records out of 88360 total, starting on record 8721, ending on 8725

Actions