NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
85961  CVE-2017-6637  A vulnerability in the web interface of Cisco Prime Collaboration Provisioning Software (prior to Release 11.1) could allow an authenticated, remote attacker to delete any file from an affected system. The vulnerability exists because the affected software does not perform proper input validation of HTTP requests and fails to apply role-based access controls (RBACs) to requested HTTP URLs. An attacker could exploit this vulnerability by sending a crafted HTTP request that uses directory traversal techniques to submit a path to a desired file location on an affected system. A successful exploit could allow the attacker to delete any file from the system. Cisco Bug IDs: CSCvc99618.    Medium  2017-07-18  2017-07-07  View
86217  CVE-2017-9114  In OpenEXR 2.2.0, an invalid read of size 1 in the refill function in ImfFastHuf.cpp could cause the application to crash.    4.3  Medium  2017-06-03  2017-06-01  View
86473  CVE-2017-7502  Null pointer dereference vulnerability in NSS since 3.24.0 was found when server receives empty SSLv2 messages resulting into denial of service by remote attacker.    Medium  2017-07-18  2017-07-07  View
86729  CVE-2014-8687  Seagate Business NAS devices with firmware before 2015.00322 allow remote attackers to execute arbitrary code with root privileges by leveraging use of a static encryption key to create session tokens.    10  High  2017-06-18  2017-06-16  View
86985  CVE-2017-7373  In all Android releases from CAF using the Linux kernel, a double free vulnerability exists in a display driver.    9.3  High  2017-07-18  2017-07-07  View

Page 1783 of 17672, showing 5 records out of 88360 total, starting on record 8911, ending on 8915

Actions