NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
87746 | CVE-2017-10968 | In FineCMS through 2017-07-07, applicationcorecontroller emplate.php allows remote PHP code execution by placing the code after <?php in a route=template request. | 2 | 7.5 | High | 2017-07-18 | 2017-07-17 | View | |
87747 | CVE-2017-10970 | Cross-site scripting (XSS) vulnerability in link.php in Cacti 1.1.12 allows remote anonymous users to inject arbitrary web script or HTML via the id parameter, related to the die_html_input_error function in lib/html_validate.php. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-17 | View | |
87748 | CVE-2017-10971 | In the X.Org X server before 2017-06-19, a user authenticated to an X Session could crash or execute code in the context of the X Server by exploiting a stack overflow in the endianness conversion of X Events. | 2017-07-18 | 2017-07-17 | View | ||||
87749 | CVE-2017-10972 | Uninitialized data in endianness conversion in the XEvent handling of the X.Org X Server before 2017-06-19 allowed authenticated malicious users to access potentially privileged data from the X server. | 2017-07-18 | 2017-07-17 | View | ||||
87750 | CVE-2017-10973 | In FineCMS before 2017-07-06, application/lib/ajax/get_image_data.php has SSRF, related to requests for non-image files with a modified HTTP Host header. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-17 | View |
Page 17550 of 17672, showing 5 records out of 88360 total, starting on record 87746, ending on 87750