NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83829 | CVE-2017-7222 | A cross-site scripting (XSS) vulnerability in MantisBT before 2.1.1 allows remote attackers to inject arbitrary HTML or JavaScript (if MantisBT's CSP settings permit it) by modifying 'window_title' in the application configuration. This requires privileged access to MantisBT configuration management pages (i.e., administrator access rights) or altering the system configuration file (config_inc.php). | 2 | 4.3 | Medium | 2017-03-29 | 2017-03-23 | View | |
83830 | CVE-2017-7223 | GNU assembler in GNU Binutils 2.28 is vulnerable to a global buffer overflow (of size 1) while attempting to unget an EOF character from the input stream, potentially leading to a program crash. | 2 | 5 | Medium | 2017-03-29 | 2017-03-24 | View | |
84086 | CVE-2016-2406 | The permission control module in Huawei Document Security Management (aka DSM) before V100R002C05SPC670 allows remote authenticated users to obtain sensitive information from encrypted documents by leveraging incorrect control of permissions on the PrintScreen button. | 2 | 4 | Medium | 2017-03-29 | 2017-03-23 | View | |
84087 | CVE-2016-2981 | An undisclosed vulnerability in the CLM applications in IBM Jazz Team Server may allow unauthorized access to user credentials. IBM Reference #: 1999965. | 2 | 2.1 | Low | 2017-03-29 | 2017-03-23 | View | |
84088 | CVE-2016-4926 | Insufficient authentication vulnerability in Junos Space before 15.2R2 allows remote network based users with access to Junos Space web interface to perform certain administrative tasks without authentication. | 2 | 7.5 | High | 2017-03-29 | 2017-03-22 | View |
Page 1918 of 17672, showing 5 records out of 88360 total, starting on record 9586, ending on 9590