NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
87790 | CVE-2017-1113 | IBM Rational Team Concert (RTC) 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 121151. | 2 | 3.5 | Low | 2017-07-18 | 2017-07-14 | View | |
87796 | CVE-2017-11144 | In PHP before 5.6.31, 7.x before 7.0.21, and 7.1.x before 7.1.7, the openssl extension PEM sealing code did not check the return value of the OpenSSL sealing function, which could lead to a crash of the PHP interpreter, related to an interpretation conflict for a negative number in ext/openssl/openssl.c, and an OpenSSL documentation omission. | 2 | 5 | Medium | 2017-07-18 | 2017-07-14 | View | |
88059 | CVE-2017-6734 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web interface of an affected device, related to the Guest Portal. More Information: CSCvd74794. Known Affected Releases: 1.3(0.909) 2.1(0.800). | 2 | 3.5 | Low | 2017-07-18 | 2017-07-14 | View | |
87804 | CVE-2017-11167 | FineCMS 2.1.0 allows remote attackers to execute arbitrary PHP code by using a URL Manager Add Site action to enter this code after a ', sequence in a domain name, as demonstrated by the ',phpinfo() input value. | 2 | 7.5 | High | 2017-07-18 | 2017-07-14 | View | |
87811 | CVE-2017-11179 | FineCMS through 2017-07-11 has stored XSS in route=admin when modifying user information, and in route=register when registering a user account. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-16 | View |
Page 17549 of 17672, showing 5 records out of 88360 total, starting on record 87741, ending on 87745