NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
87333  CVE-2017-9773  Denial of Service was found in Horde_Image 2.x before 2.5.0 via a crafted URL to the Null image driver.    4.3  Medium  2017-07-18  2017-07-05  View
87589  CVE-2017-1000052  Elixir Plug before v1.0.4, v1.1.7, v1.2.3 and v1.3.2 is vulnerable to null byte injection in the Plug.Static component, which may allow users to bypass filetype restrictions.          2017-07-18  2017-07-17  View
87845  CVE-2017-11348  In Octopus Deploy 3.x before 3.15.4, an authenticated user with PackagePush permission to upload packages could upload a maliciously crafted NuGet package, potentially overwriting other packages or modifying system files. This is a directory traversal in the PackageId value.          2017-07-18  2017-07-17  View
88101  CVE-2017-7729  On iSmartAlarm cube devices, there is Incorrect Access Control because a new key is transmitted in cleartext.    Medium  2017-07-18  2017-07-13  View
88357  CVE-2016-9196  A vulnerability in login authentication management in Cisco Aironet 1800, 2800, and 3800 Series Access Point platforms could allow an authenticated, local attacker to gain unrestricted root access to the underlying Linux operating system. The root Linux shell is provided for advanced troubleshooting and should not be available to individual users, even those with root privileges. The attacker must have the root password to exploit this vulnerability. More Information: CSCvb13893. Known Affected Releases: 8.2(121.0) 8.3(102.0). Known Fixed Releases: 8.4(1.53) 8.4(1.52) 8.3(111.0) 8.3(104.23) 8.2(130.0) 8.2(124.1).    7.2  High  2017-07-18  2017-07-11  View

Page 219 of 17672, showing 5 records out of 88360 total, starting on record 1091, ending on 1095

Actions