NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83232  CVE-2017-5638  The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 mishandles file upload, which allows remote attackers to execute arbitrary commands via a #cmd= string in a crafted Content-Type HTTP header, as exploited in the wild in March 2017.    10  High  2017-07-18  2017-07-17  View
87584  CVE-2017-1000047  rbenv (all current versions) is vulnerable to Directory Traversal in the specification of Ruby version resulting in arbitrary code execution          2017-07-18  2017-07-17  View
87840  CVE-2017-11343  Due to an incomplete fix for CVE-2012-6125, all versions of CHICKEN Scheme up to and including 4.12.0 are vulnerable to an algorithmic complexity attack. An attacker can provide crafted input which, when inserted into the symbol table, will result in O(n) lookup time.          2017-07-18  2017-07-17  View
88096  CVE-2017-7685  Apache OpenMeetings 1.0.0 responds to the following insecure HTTP methods: PUT, DELETE, HEAD, and PATCH.          2017-07-18  2017-07-17  View
87585  CVE-2017-1000048  the web framework using ljharb's qs module older than v6.3.2, v6.2.3, v6.1.2, and v6.0.4 is vulnerable to a DoS. A malicious user can send a evil request to cause the web framework crash.          2017-07-18  2017-07-17  View

Page 25 of 17672, showing 5 records out of 88360 total, starting on record 121, ending on 125

Actions