NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
84975 | CVE-2017-7879 | SQL Injection vulnerability in flatCore version 1.4.6 allows an attacker to read the content database. | 2 | 5 | Medium | 2017-04-27 | 2017-04-21 | View | |
85231 | CVE-2013-6662 | Google Chrome caches TLS sessions before certificate validation occurs. | 2 | 4.3 | Medium | 2017-04-27 | 2017-04-20 | View | |
84208 | CVE-2017-0884 | Nextcloud Server before 9.0.55 and 10.0.2 suffers from a creation of folders in read-only folders despite lacking permissions issue. Due to a logical error in the file caching layer an authenticated adversary is able to create empty folders inside a shared folder. Note that this only affects folders and files that the adversary has at least read-only permissions for. | 2 | 4 | Medium | 2017-04-27 | 2017-04-10 | View | |
84976 | CVE-2017-7881 | BigTree CMS through 4.2.17 relies on a substring check for CSRF protection, which allows remote attackers to bypass this check by placing the required admin/developer/ URI within a query string in an HTTP Referer header. This was found in core/admin/modules/developer/_header.php and patched in core/inc/bigtree/admin.php on 2017-04-14. | 2 | 6.8 | Medium | 2017-04-27 | 2017-04-21 | View | |
85232 | CVE-2013-7450 | Pulp before 2.3.0 uses the same the same certificate authority key and certificate for all installations. | 2 | 5 | Medium | 2017-04-27 | 2017-04-26 | View |
Page 1868 of 17672, showing 5 records out of 88360 total, starting on record 9336, ending on 9340