NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85559 | CVE-2017-8385 | Craft CMS before 2.6.2976 does not prevent modification of the URL in a forgot-password email message. | 2 | 5 | Medium | 2017-05-27 | 2017-05-11 | View | |
86479 | CVE-2017-8386 | git-shell in git before 2.4.12, 2.5.x before 2.5.6, 2.6.x before 2.6.7, 2.7.x before 2.7.5, 2.8.x before 2.8.5, 2.9.x before 2.9.4, 2.10.x before 2.10.3, 2.11.x before 2.11.2, and 2.12.x before 2.12.3 might allow remote authenticated users to gain privileges via a repository name that starts with a - (dash) character. | 2 | 6.5 | Medium | 2017-07-18 | 2017-06-30 | View | |
88129 | CVE-2017-8387 | STDU Viewer version 1.6.375 might allow user-assisted attackers to execute code via a crafted file. One threat model is a victim who obtains an untrusted crafted file from a remote location and issues several user-defined commands including Ctrl-+ commands. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-14 | View | |
85560 | CVE-2017-8388 | GeniXCMS 1.0.2 allows remote attackers to bypass the alertDanger MSG_USER_EMAIL_EXIST protection mechanism via a register.php?act=edit&id=1 request. | 2 | 5 | Medium | 2017-05-27 | 2017-05-11 | View | |
85561 | CVE-2017-8391 | The OS Installation Management component in CA Client Automation r12.9, r14.0, and r14.0 SP1 places an encrypted password into a readable local file during operating system installation, which allows local users to obtain sensitive information by reading this file after operating system installation. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-07 | View |
Page 17499 of 17672, showing 5 records out of 88360 total, starting on record 87491, ending on 87495