NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86018 | CVE-2017-7433 | An absolute path traversal vulnerability (CWE-36) in Micro Focus Vibe 4.0.2 and earlier allows a remote authenticated attacker to download arbitrary files from the server by submitting a specially crafted request to the viewFile endpoint. Note that the attack can be performed without authentication if Guest access is enabled (Guest access is disabled by default). | 2 | 4 | Medium | 2017-06-03 | 2017-06-01 | View | |
85483 | CVE-2017-7432 | Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have a webshell upload vulnerability. | 2 | 7.5 | High | 2017-05-27 | 2017-05-15 | View | |
85482 | CVE-2017-7431 | Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have persistent CSRF in object management. | 2 | 6.8 | Medium | 2017-05-27 | 2017-05-15 | View | |
85481 | CVE-2017-7430 | Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have a persistent XSS vulnerability in Framework. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-12 | View | |
85480 | CVE-2017-7428 | NetIQ iManager 3.x before 3.0.3.1 has an issue in the renegotiation of connection parameters with Tomcat. | 2 | 5 | Medium | 2017-05-27 | 2017-05-15 | View |
Page 265 of 17672, showing 5 records out of 88360 total, starting on record 1321, ending on 1325