NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85961 | CVE-2017-6637 | A vulnerability in the web interface of Cisco Prime Collaboration Provisioning Software (prior to Release 11.1) could allow an authenticated, remote attacker to delete any file from an affected system. The vulnerability exists because the affected software does not perform proper input validation of HTTP requests and fails to apply role-based access controls (RBACs) to requested HTTP URLs. An attacker could exploit this vulnerability by sending a crafted HTTP request that uses directory traversal techniques to submit a path to a desired file location on an affected system. A successful exploit could allow the attacker to delete any file from the system. Cisco Bug IDs: CSCvc99618. | 2 | 4 | Medium | 2017-07-18 | 2017-07-07 | View | |
86217 | CVE-2017-9114 | In OpenEXR 2.2.0, an invalid read of size 1 in the refill function in ImfFastHuf.cpp could cause the application to crash. | 2 | 4.3 | Medium | 2017-06-03 | 2017-06-01 | View | |
86473 | CVE-2017-7502 | Null pointer dereference vulnerability in NSS since 3.24.0 was found when server receives empty SSLv2 messages resulting into denial of service by remote attacker. | 2 | 5 | Medium | 2017-07-18 | 2017-07-07 | View | |
86729 | CVE-2014-8687 | Seagate Business NAS devices with firmware before 2015.00322 allow remote attackers to execute arbitrary code with root privileges by leveraging use of a static encryption key to create session tokens. | 2 | 10 | High | 2017-06-18 | 2017-06-16 | View | |
86985 | CVE-2017-7373 | In all Android releases from CAF using the Linux kernel, a double free vulnerability exists in a display driver. | 2 | 9.3 | High | 2017-07-18 | 2017-07-07 | View |
Page 1783 of 17672, showing 5 records out of 88360 total, starting on record 8911, ending on 8915