NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83265 | CVE-2017-5938 | Cross-site scripting (XSS) vulnerability in the nav_path function in lib/viewvc.py in ViewVC before 1.0.14 and 1.1.x before 1.1.26 allows remote attackers to inject arbitrary web script or HTML via the nav_data name. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-07 | View | |
83264 | CVE-2017-5937 | The util_format_is_pure_uint function in vrend_renderer.c in Virgil 3d project (aka virglrenderer) 0.6.0 and earlier allows local guest OS users to cause a denial of service (NULL pointer dereference) via a crafted VIRGL_CCMD_CLEAR command. | 2 | 2.1 | Low | 2017-03-18 | 2017-03-17 | View | |
84711 | CVE-2017-5936 | OpenStack Nova-LXD before 13.1.1 uses the wrong name for the veth pairs when applying Neutron security group rules for instances, which allows remote attackers to bypass intended security restrictions. | 2 | 5 | Medium | 2017-04-27 | 2017-04-20 | View | |
82255 | CVE-2017-5933 | Citrix NetScaler ADC and NetScaler Gateway 10.5 before Build 65.11, 11.0 before Build 69.12/69.123, and 11.1 before Build 51.21 randomly generates GCM nonces, which makes it marginally easier for remote attackers to obtain the GCM authentication key and spoof data by leveraging a reused nonce in a session and a forbidden attack, a similar issue to CVE-2016-0270. | 2 | 4.3 | Medium | 2017-03-18 | 2017-03-14 | View | |
83751 | CVE-2017-5932 | The path autocompletion feature in Bash 4.4 allows local users to gain privileges via a crafted filename starting with a (double quote) character and a command substitution metacharacter. | 2 | 4.6 | Medium | 2017-04-27 | 2017-03-31 | View |
Page 430 of 17672, showing 5 records out of 88360 total, starting on record 2146, ending on 2150