NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85294 | CVE-2016-3037 | IBM Cognos TM1 10.1 and 10.2 provides a service to return the victim"s password with a valid session key. An authenticated attacker with user interaction could obtain this sensitive information. IBM X-Force ID: 114613. | 2 | 3.5 | Low | 2017-04-27 | 2017-04-21 | View | |
84783 | CVE-2017-7279 | An unprivileged user of the Unitrends Enterprise Backup before 9.0.0 web server can escalate to root privileges by modifying the token cookie issued at login. | 2 | 10 | High | 2017-04-27 | 2017-04-20 | View | |
85295 | CVE-2016-3038 | IBM Cognos TM1 10.1 and 10.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 114614. | 2 | 3.5 | Low | 2017-04-27 | 2017-04-21 | View | |
83248 | CVE-2017-5849 | tiffttopnm in netpbm 10.47.63 does not properly use the libtiff TIFFRGBAImageGet function, which allows remote attackers to cause a denial of service (out-of-bounds read and write) via a crafted tiff image file, related to transposing width and height values. | 2 | 4.3 | Medium | 2017-04-27 | 2017-04-07 | View | |
84784 | CVE-2017-7280 | An issue was discovered in api/includes/systems.php in Unitrends Enterprise Backup before 9.0.0. User input is not properly filtered before being sent to a popen function. This allows for remote code execution by sending a specially crafted user variable. | 2 | 7.5 | High | 2017-04-27 | 2017-04-20 | View |
Page 1765 of 17672, showing 5 records out of 88360 total, starting on record 8821, ending on 8825