NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
87290  CVE-2017-4984  In EMC VNX2 versions prior to OE for File 8.1.9.211 and VNX1 versions prior to OE for File 7.1.80.8, an unauthenticated remote attacker may be able to elevate their permissions to root through a command injection. This may potentially be exploited by an attacker to run arbitrary code with root-level privileges on the targeted VNX Control Station system, aka remote code execution.    10  High  2017-07-18  2017-06-29  View
87546  CVE-2017-1000006  Plotly, Inc. plotly.js versions prior to 1.16.0 are vulnerable to an XSS issue.          2017-07-18  2017-07-17  View
87802  CVE-2017-11165  dataTaker DT80 dEX 1.50.012 allows remote attackers to obtain sensitive credential and configuration information via a direct request for the /services/getFile.cmd?userfile=config.xml URI.    Medium  2017-07-18  2017-07-17  View
88058  CVE-2017-6733  A vulnerability in the web-based application interface of the Cisco Identity Services Engine (ISE) portal could allow an unauthenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web interface of an affected system. More Information: CSCvd87482. Known Affected Releases: 2.1(102.101) 2.2(0.283) 2.3(0.151).    4.3  Medium  2017-07-18  2017-07-16  View
88314  CVE-2016-8947  IBM Emptoris Sourcing 9.5.x through 10.1.x could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL displayed to redirect a user to a malicious Web site that would appear to be trusted. This could allow the attacker to obtain highly sensitive information or conduct further attacks against the victim. IBM X-Force ID: 118834          2017-07-18  2017-07-17  View

Page 2161 of 17672, showing 5 records out of 88360 total, starting on record 10801, ending on 10805

Actions