NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
84849 | CVE-2017-7450 | AIRTAME HDMI dongle with firmware before 2.2.0 allows unauthenticated access to a big part of the management interface. It is possible to extract all information including the Wi-Fi password, reboot, or force a software update at an arbitrary time. | 2 | 10 | High | 2017-04-27 | 2017-04-12 | View | |
84860 | CVE-2017-7565 | Splunk Hadoop Connect App has a path traversal vulnerability that allows remote authenticated users to execute arbitrary code, aka ERP-2041. | 2 | 6.5 | Medium | 2017-04-27 | 2017-04-12 | View | |
84862 | CVE-2017-7569 | In vBulletin before 5.3.0, remote attackers can bypass the CVE-2016-6483 patch and conduct SSRF attacks by leveraging the behavior of the PHP parse_url function, aka VBV-17037. | 2 | 5 | Medium | 2017-04-27 | 2017-04-12 | View | |
84864 | CVE-2017-7571 | public/rolechangeadmin in Faveo 1.9.3 allows CSRF. The impact is obtaining admin privileges. | 2 | 6 | Medium | 2017-04-27 | 2017-04-12 | View | |
84865 | CVE-2017-7572 | The _checkPolkitPrivilege function in serviceHelper.py in Back In Time (aka backintime) 1.1.18 and earlier uses a deprecated polkit authorization method (unix-process) that is subject to a race condition (time of check, time of use). With this authorization method, the owner of a process requesting a polkit operation is checked by polkitd via /proc/<pid>/status, by which time the requesting process may have been replaced by a different process with the same PID that has different privileges then the original requester. | 2 | 9.3 | High | 2017-04-27 | 2017-04-12 | View |
Page 1838 of 17672, showing 5 records out of 88360 total, starting on record 9186, ending on 9190