NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
85558  CVE-2017-8384  Craft CMS before 2.6.2976 allows XSS attacks because an array returned by HttpRequestService::getSegments() and getActionSegments() need not be zero-based. NOTE: this vulnerability exists because of an incomplete fix for CVE-2017-8052.    4.3  Medium  2017-05-27  2017-05-11  View
85557  CVE-2017-8383  Craft CMS before 2.6.2976 does not properly restrict viewing the contents of files in the craft/app/ folder.    Medium  2017-05-27  2017-05-11  View
86068  CVE-2017-8382  admidio 3.2.8 has CSRF in adm_program/modules/members/members_function.php with an impact of deleting arbitrary user accounts.    3.5  Low  2017-06-12  2017-06-04  View
88128  CVE-2017-8381  XnView Classic for Windows Version 2.40 allows user-assisted remote attackers to execute code via a crafted .mkv file that is mishandled during the opening of a directory in Browser mode, because of a User Mode Write AV near NULL in XnView.exe.    6.8  Medium  2017-07-18  2017-07-10  View
86067  CVE-2017-8379  Memory leak in the keyboard input event handlers support in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (host memory consumption) by rapidly generating large keyboard events.    4.9  Medium  2017-07-18  2017-06-30  View

Page 175 of 17672, showing 5 records out of 88360 total, starting on record 871, ending on 875

Actions