NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
87085 | CVE-2017-9231 | XML external entity (XXE) vulnerability in Citrix XenMobile Server 9.x and 10.x before 10.5 RP3 allows attackers to obtain sensitive information via unspecified vectors. | 2 | 5 | Medium | 2017-07-18 | 2017-07-06 | View | |
87084 | CVE-2017-9097 | In Anti-Web through 3.8.7, as used on NetBiter FGW200 devices through 3.21.2, WS100 devices through 3.30.5, EC150 devices through 1.40.0, WS200 devices through 3.30.4, EC250 devices through 1.40.0, and other products, an LFI vulnerability allows a remote attacker to read or modify files through a path traversal technique, as demonstrated by reading the password file, or using the template parameter to cgi-bin/write.cgi to write to an arbitrary file. | 2 | 6.4 | Medium | 2017-07-18 | 2017-07-05 | View | |
87083 | CVE-2017-8907 | Atlassian Bamboo 5.x before 5.15.7 and 6.x before 6.0.1 did not correctly check if a user creating a deployment project had the edit permission and therefore the rights to do so. An attacker who can login to Bamboo as a user without the edit permission for deployment projects is able to use this vulnerability, provided there is an existing plan with a green build, to create a deployment project and execute arbitrary code on an available Bamboo Agent. By default a local agent is enabled; this means that code execution can occur on the system hosting Bamboo as the user running Bamboo. | 2 | 6.5 | Medium | 2017-07-18 | 2017-07-05 | View | |
87082 | CVE-2017-8555 | Microsoft Edge in Microsoft Windows 10 1703 allows an attacker to trick a user into loading a page with malicious content when the Edge Content Security Policy (CSP) fails to properly validate certain specially crafted documents, aka Microsoft Edge Security Feature Bypass Vulnerability. This CVE ID is unique from CVE-2017-8523 and CVE-2017-8530. | 2 | 4.3 | Medium | 2017-06-23 | 2017-06-21 | View | |
87081 | CVE-2017-8553 | An information disclosure vulnerability exists in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows Server 2016 when the Windows kernel improperly handles objects in memory, aka GDI Information Disclosure Vulnerability. | 2 | 1.9 | Low | 2017-07-18 | 2017-07-07 | View |
Page 256 of 17672, showing 5 records out of 88360 total, starting on record 1276, ending on 1280