NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85052 | CVE-2017-8109 | The salt-ssh minion code in SaltStack Salt 2016.11 before 2016.11.4 copied over configuration from the Salt Master without adjusting permissions, which might leak credentials to local attackers on configured minions (clients). | 2 | 2.1 | Low | 2017-05-07 | 2017-05-05 | View | |
23868 | CVE-2015-1602 | Siemens SIMATIC STEP 7 (TIA Portal) 12 and 13 before 13 SP1 Upd1 improperly stores password data within project files, which makes it easier for local users to determine cleartext (1) protection-level passwords or (2) web-server passwords by leveraging the ability to read these files. | 2 | 2.1 | Low | 2017-01-19 | 2015-04-23 | View | |
25404 | CVE-2015-3757 | Apple OS X before 10.10.5 does not properly restrict access to the Date & Time preferences pane, which allows local users to spoof the time by visiting this pane. | 2 | 2.1 | Low | 2017-01-19 | 2016-11-28 | View | |
31804 | CVE-2014-3645 | arch/x86/kvm/vmx.c in the KVM subsystem in the Linux kernel before 3.12 does not have an exit handler for the INVEPT instruction, which allows guest OS users to cause a denial of service (guest OS crash) via a crafted application. | 2 | 2.1 | Low | 2017-01-19 | 2015-03-17 | View | |
39996 | CVE-2013-4383 | Cross-site scripting (XSS) vulnerability in the jQuery Countdown module 7.x-1.x before 7.x-1.1 for Drupal allows remote authenticated users with the "access administration pages" permission to inject arbitrary web script or HTML via unspecified vectors. | 2 | 2.1 | Low | 2017-01-18 | 2014-02-04 | View |
Page 1869 of 17672, showing 5 records out of 88360 total, starting on record 9341, ending on 9345