NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
84737 | CVE-2017-6441 | ** DISPUTED ** The _zval_get_long_func_ex in Zend/zend_operators.c in PHP 7.1.2 allows attackers to cause a denial of service (NULL pointer dereference and application crash) via crafted use of declare(ticks= in a PHP script. NOTE: the vendor disputes the classification of this as a vulnerability, stating Please do not request CVEs for ordinary bugs. CVEs are relevant for security issues only. | 2 | 5 | Medium | 2017-04-27 | 2017-04-10 | View | |
84993 | CVE-2017-7951 | WonderCMS before 2.0.3 has CSRF because of lack of a token in an unspecified context. | 2 | 6.8 | Medium | 2017-04-27 | 2017-04-24 | View | |
85505 | CVE-2017-8081 | Poor cryptographic salt initialization in admin/inc/template_functions.php in GetSimple CMS 3.3.13 allows a network attacker to escalate privileges to an arbitrary user or conduct CSRF attacks via calculation of a session cookie or CSRF nonce. | 2 | 6.8 | Medium | 2017-05-27 | 2017-05-11 | View | |
85761 | CVE-2017-0601 | An Elevation of Privilege vulnerability in Bluetooth could potentially enable a local malicious application to accept harmful files shared via bluetooth without user permission. This issue is rated as Moderate due to local bypass of user interaction requirements. Product: Android. Versions: 7.0, 7.1.1, 7.1.2. Android ID: A-35258579. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-19 | View | |
86017 | CVE-2017-7343 | An open redirect vulnerability in Fortinet FortiPortal 4.0.0 and below allows attacker to execute unauthorized code or commands via the url parameter. | 2 | 5.8 | Medium | 2017-06-03 | 2017-05-31 | View |
Page 236 of 17672, showing 5 records out of 88360 total, starting on record 1176, ending on 1180