NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
87300  CVE-2017-7668  The HTTP strict parsing changes added in Apache httpd 2.2.32 and 2.4.24 introduced a bug in token list parsing, which allows ap_find_token() to search past the end of its input string. By maliciously crafting a sequence of request headers, an attacker may be able to cause a segmentation fault, or to force ap_find_token() to return an incorrect value.    7.5  High  2017-07-18  2017-07-06  View
86989  CVE-2017-7667  Apache NiFi before 0.7.4 and 1.x before 1.3.0 need to establish the response header telling browsers to only allow framing with the same origin.    Medium  2017-06-23  2017-06-19  View
88086  CVE-2017-7666  Apache OpenMeetings 1.0.0 is vulnerable to Cross-Site Request Forgery (CSRF) attacks, XSS attacks, click-jacking, and MIME based attacks.          2017-07-18  2017-07-17  View
86988  CVE-2017-7665  In Apache NiFi before 0.7.4 and 1.x before 1.3.0, there are certain user input components in the UI which had been guarding for some forms of XSS issues but were insufficient.    4.3  Medium  2017-06-23  2017-06-19  View
88085  CVE-2017-7664  Uploaded XML documents were not correctly validated in Apache OpenMeetings 3.1.0.          2017-07-18  2017-07-17  View

Page 238 of 17672, showing 5 records out of 88360 total, starting on record 1186, ending on 1190

Actions