NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
84220 | CVE-2017-1149 | IBM UrbanCode Deploy (UCD) 6.0, 6.1, and 6.2 is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerability to expose highly sensitive information or consume all available memory resources. IBM X-Force ID: 122202. | 2 | 7.5 | High | 2017-05-07 | 2017-05-05 | View | |
84990 | CVE-2017-7944 | XOOPS Core 2.5.8.1 has XSS due to unescaped HTML output of an Install DB failure error message in page_dbsettings.php. | 2 | 4.3 | Medium | 2017-05-07 | 2017-04-27 | View | |
84224 | CVE-2017-1161 | IBM API Connect 5.0.6.0 could allow a remote attacker to execute arbitrary commands on the system, caused by improper validation of URLs for the Developer Portal. By crafting a malicious URL, an attacker could exploit this vulnerability to execute arbitrary commands on the system with the privileges of the www-data user. IBM X-Force ID: 122956. | 2 | 7.5 | High | 2017-04-27 | 2017-04-25 | View | |
84736 | CVE-2017-6412 | In Sophos Web Appliance (SWA) before 4.3.1.2, Session Fixation could occur, aka NSWA-1310. | 2 | 6.8 | Medium | 2017-04-27 | 2017-04-14 | View | |
84992 | CVE-2017-7948 | Integer overflow in the mark_curve function in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (out-of-bounds write and application crash) or possibly have unspecified other impact via a crafted PostScript document. | 2 | 6.8 | Medium | 2017-04-27 | 2017-04-25 | View |
Page 1745 of 17672, showing 5 records out of 88360 total, starting on record 8721, ending on 8725