NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
84757  CVE-2017-6616  A vulnerability in the web-based GUI of Cisco Integrated Management Controller (IMC) 3.0(1c) could allow an authenticated, remote attacker to execute arbitrary code on an affected system. The vulnerability exists because the affected software does not sufficiently sanitize specific values that are received as part of a user-supplied HTTP request. An attacker could exploit this vulnerability by sending a crafted HTTP request to the affected software. A successful exploit could allow the attacker to execute arbitrary code with the privileges of the user on the affected system. Cisco Bug IDs: CSCvd14578.    High  2017-04-27  2017-04-26  View
85269  CVE-2016-10120  Firejail uses 0777 permissions when mounting (1) /dev, (2) /dev/shm, (3) /var/tmp, or (4) /var/lock, which allows local users to gain privileges.    7.2  High  2017-04-27  2017-04-19  View
83734  CVE-2017-5524  Plone 4.x through 4.3.11 and 5.x through 5.0.6 allow remote attackers to bypass a sandbox protection mechanism and obtain sensitive information by leveraging the Python string format method.    Medium  2017-04-27  2017-03-29  View
85014  CVE-2017-7994  The function TextExtractor::ExtractText in TextExtractor.cpp:77 in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted PDF document.    4.3  Medium  2017-04-27  2017-04-26  View
85270  CVE-2016-10121  Firejail uses weak permissions for /dev/shm/firejail and possibly other files, which allows local users to gain privileges.    7.2  High  2017-04-27  2017-04-19  View

Page 1754 of 17672, showing 5 records out of 88360 total, starting on record 8766, ending on 8770

Actions