NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
84849  CVE-2017-7450  AIRTAME HDMI dongle with firmware before 2.2.0 allows unauthenticated access to a big part of the management interface. It is possible to extract all information including the Wi-Fi password, reboot, or force a software update at an arbitrary time.    10  High  2017-04-27  2017-04-12  View
84860  CVE-2017-7565  Splunk Hadoop Connect App has a path traversal vulnerability that allows remote authenticated users to execute arbitrary code, aka ERP-2041.    6.5  Medium  2017-04-27  2017-04-12  View
84862  CVE-2017-7569  In vBulletin before 5.3.0, remote attackers can bypass the CVE-2016-6483 patch and conduct SSRF attacks by leveraging the behavior of the PHP parse_url function, aka VBV-17037.    Medium  2017-04-27  2017-04-12  View
84864  CVE-2017-7571  public/rolechangeadmin in Faveo 1.9.3 allows CSRF. The impact is obtaining admin privileges.    Medium  2017-04-27  2017-04-12  View
84865  CVE-2017-7572  The _checkPolkitPrivilege function in serviceHelper.py in Back In Time (aka backintime) 1.1.18 and earlier uses a deprecated polkit authorization method (unix-process) that is subject to a race condition (time of check, time of use). With this authorization method, the owner of a process requesting a polkit operation is checked by polkitd via /proc/<pid>/status, by which time the requesting process may have been replaced by a different process with the same PID that has different privileges then the original requester.    9.3  High  2017-04-27  2017-04-12  View

Page 1838 of 17672, showing 5 records out of 88360 total, starting on record 9186, ending on 9190

Actions