NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
87300 | CVE-2017-7668 | The HTTP strict parsing changes added in Apache httpd 2.2.32 and 2.4.24 introduced a bug in token list parsing, which allows ap_find_token() to search past the end of its input string. By maliciously crafting a sequence of request headers, an attacker may be able to cause a segmentation fault, or to force ap_find_token() to return an incorrect value. | 2 | 7.5 | High | 2017-07-18 | 2017-07-06 | View | |
86989 | CVE-2017-7667 | Apache NiFi before 0.7.4 and 1.x before 1.3.0 need to establish the response header telling browsers to only allow framing with the same origin. | 2 | 5 | Medium | 2017-06-23 | 2017-06-19 | View | |
88086 | CVE-2017-7666 | Apache OpenMeetings 1.0.0 is vulnerable to Cross-Site Request Forgery (CSRF) attacks, XSS attacks, click-jacking, and MIME based attacks. | 2017-07-18 | 2017-07-17 | View | ||||
86988 | CVE-2017-7665 | In Apache NiFi before 0.7.4 and 1.x before 1.3.0, there are certain user input components in the UI which had been guarding for some forms of XSS issues but were insufficient. | 2 | 4.3 | Medium | 2017-06-23 | 2017-06-19 | View | |
88085 | CVE-2017-7664 | Uploaded XML documents were not correctly validated in Apache OpenMeetings 3.1.0. | 2017-07-18 | 2017-07-17 | View |
Page 238 of 17672, showing 5 records out of 88360 total, starting on record 1186, ending on 1190