NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
65507  CVE-2006-6964  MailEnable Professional before 1.78 provides a cleartext user password when an administrator edits the user"s settings, which allows remote authenticated administrators to obtain sensitive information by viewing the HTML source.    Medium  2016-12-20  2008-09-05  View
11236  CVE-2011-4927  Unspecified vulnerability in the bazaar repository adapter in Redmine 1.0.x before 1.0.5 allows remote authenticated users to obtain sensitive information via unknown vectors.    Medium  2017-01-07  2012-10-09  View
17636  CVE-2016-1192  Directory traversal vulnerability in the logging implementation in Cybozu Garoon 3.7 through 4.2 allows remote authenticated users to read a log file via unspecified vectors.    Medium  2017-01-19  2016-06-21  View
83684  CVE-2017-0881  An error in the implementation of an autosubscribe feature in the check_stream_exists route of the Zulip group chat application server before 1.4.3 allowed an authenticated user to subscribe to a private stream that should have required an invitation from an existing member to join. The issue affects all previously released versions of the Zulip server.    Medium  2017-04-27  2017-04-03  View
84452  CVE-2017-3331  Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DML). The supported version that is affected is 5.7.11 to 5.7.17. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).    Medium  2017-07-18  2017-07-10  View

Page 3266 of 17672, showing 5 records out of 88360 total, starting on record 16326, ending on 16330

Actions