NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83483  CVE-2017-6896  Privilege escalation vulnerability on the DIGISOL DG-HR1400 1.00.02 wireless router enables an attacker to escalate from user privilege to admin privilege just by modifying the Base64-encoded session cookie value.    6.5  Medium  2017-03-29  2017-03-24  View
83739  CVE-2017-5618  GNU screen before 4.5.1 allows local users to modify arbitrary files and consequently gain root privileges by leveraging improper checking of logfile permissions.    7.2  High  2017-03-29  2017-03-23  View
83995  CVE-2016-9129  Revive Adserver before 3.2.3 suffers from Information Exposure Through Discrepancy. It is possible to check whether or not an email address was associated to one or more user accounts on a target Revive Adserver instance by examining the message printed by the password recovery system. Such information cannot however be used directly to log in to the system, which requires a username.    Medium  2017-03-29  2017-03-29  View
83740  CVE-2017-5622  With OxygenOS before 4.0.3, when a charger is connected to a powered-off OnePlus 3 or 3T device, the platform starts with adbd enabled. Therefore, a malicious charger or a physical attacker can open up, without authorization, an ADB session with the device, in order to further exploit other vulnerabilities and/or exfiltrate sensitive information.    3.6  Low  2017-03-29  2017-03-28  View
83996  CVE-2016-9130  Revive Adserver before 3.2.3 suffers from Persistent XSS. A vector for persistent XSS attacks via the Revive Adserver user interface exists, requiring a trusted (non-admin) account. The website name wasn"t properly escaped when displayed in the campaign-zone.php script.    3.5  Low  2017-03-29  2017-03-29  View

Page 1885 of 17672, showing 5 records out of 88360 total, starting on record 9421, ending on 9425

Actions