NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86645 | CVE-2017-8439 | Kibana version 5.4.0 was affected by a Cross Site Scripting (XSS) bug in the Time Series Visual Builder. This bug could allow an attacker to obtain sensitive information from Kibana users. | 2 | 4.3 | Medium | 2017-06-17 | 2017-06-13 | View | |
86644 | CVE-2017-8438 | Elastic X-Pack Security versions 5.0.0 to 5.4.0 contain a privilege escalation bug in the run_as functionality. This bug prevents transitioning into the specified user specified in a run_as request. If a role has been created using a template that contains the _user properties, the behavior of run_as will be incorrect. Additionally if the run_as user specified does not exist, the transition will not happen. | 2 | 6.5 | Medium | 2017-06-17 | 2017-06-13 | View | |
86643 | CVE-2017-8108 | Unspecified tests in Lynis before 2.5.0 allow local users to write to arbitrary files or possibly gain privileges via a symlink attack on a temporary file. | 2 | 4.6 | Medium | 2017-07-18 | 2017-06-28 | View | |
86642 | CVE-2017-8083 | CompuLab Intense PC and MintBox 2 devices with BIOS before 2017-05-21 do not use the CloseMnf protection mechanism for write protection of flash memory regions, which allows local users to install a firmware rootkit by leveraging administrative privileges. | 2 | 7.2 | High | 2017-06-17 | 2017-06-14 | View | |
86641 | CVE-2017-7966 | A DLL Hijacking vulnerability in the programming software in Schneider Electric's SoMachine HVAC v2.1.0 allows a remote attacker to execute arbitrary code on the targeted system. The vulnerability exists due to the improper loading of a DLL. | 2 | 6.8 | Medium | 2017-06-17 | 2017-06-15 | View |
Page 344 of 17672, showing 5 records out of 88360 total, starting on record 1716, ending on 1720