NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85558 | CVE-2017-8384 | Craft CMS before 2.6.2976 allows XSS attacks because an array returned by HttpRequestService::getSegments() and getActionSegments() need not be zero-based. NOTE: this vulnerability exists because of an incomplete fix for CVE-2017-8052. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-11 | View | |
85557 | CVE-2017-8383 | Craft CMS before 2.6.2976 does not properly restrict viewing the contents of files in the craft/app/ folder. | 2 | 5 | Medium | 2017-05-27 | 2017-05-11 | View | |
86068 | CVE-2017-8382 | admidio 3.2.8 has CSRF in adm_program/modules/members/members_function.php with an impact of deleting arbitrary user accounts. | 2 | 3.5 | Low | 2017-06-12 | 2017-06-04 | View | |
88128 | CVE-2017-8381 | XnView Classic for Windows Version 2.40 allows user-assisted remote attackers to execute code via a crafted .mkv file that is mishandled during the opening of a directory in Browser mode, because of a User Mode Write AV near NULL in XnView.exe. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
86067 | CVE-2017-8379 | Memory leak in the keyboard input event handlers support in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (host memory consumption) by rapidly generating large keyboard events. | 2 | 4.9 | Medium | 2017-07-18 | 2017-06-30 | View |
Page 175 of 17672, showing 5 records out of 88360 total, starting on record 871, ending on 875