NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86992 | CVE-2017-7876 | QNAP QTS before 4.2.6 build 20170517 allows command injection. | 2 | 7.5 | High | 2017-06-23 | 2017-06-22 | View | |
84973 | CVE-2017-7877 | CSRF vulnerability in flatCore version 1.4.6 allows remote attackers to modify CMS configurations. | 2 | 6.8 | Medium | 2017-04-27 | 2017-04-21 | View | |
84974 | CVE-2017-7878 | SQL Injection vulnerability in flatCore version 1.4.6 allows an attacker to read and write to the users database. | 2 | 7.5 | High | 2017-04-27 | 2017-04-21 | View | |
84975 | CVE-2017-7879 | SQL Injection vulnerability in flatCore version 1.4.6 allows an attacker to read the content database. | 2 | 5 | Medium | 2017-04-27 | 2017-04-21 | View | |
84976 | CVE-2017-7881 | BigTree CMS through 4.2.17 relies on a substring check for CSRF protection, which allows remote attackers to bypass this check by placing the required admin/developer/ URI within a query string in an HTTP Referer header. This was found in core/admin/modules/developer/_header.php and patched in core/inc/bigtree/admin.php on 2017-04-14. | 2 | 6.8 | Medium | 2017-04-27 | 2017-04-21 | View |
Page 17451 of 17672, showing 5 records out of 88360 total, starting on record 87251, ending on 87255