NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
82214 | CVE-2017-5151 | An issue was discovered in VideoInsight Web Client Version 6.3.5.11 and previous versions. A SQL Injection vulnerability has been identified, which may allow remote code execution. | 2 | 7.5 | High | 2017-02-28 | 2017-02-16 | View | |
82213 | CVE-2017-5149 | An issue was discovered in St. Jude Medical Merlin@home, versions prior to Version 8.2.2 (RF models: EX1150; Inductive models: EX1100; and Inductive models: EX1100 with MerlinOnDemand capability). The identities of the endpoints for the communication channel between the transmitter and St. Jude Medical's web site, Merlin.net, are not verified. This may allow a man-in-the-middle attacker to access or influence communications between the identified endpoints. | 2 | 6.8 | Medium | 2017-03-18 | 2017-03-16 | View | |
82212 | CVE-2017-5146 | An issue was discovered in Carlo Gavazzi VMU-C EM prior to firmware Version A11_U05, and VMU-C PV prior to firmware Version A17. Sensitive information is stored in clear-text. | 2 | 5 | Medium | 2017-02-28 | 2017-02-24 | View | |
82211 | CVE-2017-5145 | An issue was discovered in Carlo Gavazzi VMU-C EM prior to firmware Version A11_U05, and VMU-C PV prior to firmware Version A17. Successful exploitation of this CROSS-SITE REQUEST FORGERY (CSRF) vulnerability can allow execution of unauthorized actions on the device such as configuration parameter changes, and saving modified configuration. | 2 | 7.5 | High | 2017-02-28 | 2017-02-24 | View | |
82210 | CVE-2017-5144 | An issue was discovered in Carlo Gavazzi VMU-C EM prior to firmware Version A11_U05, and VMU-C PV prior to firmware Version A17. The access control flaw allows access to most application functions without authentication. | 2 | 7.5 | High | 2017-02-28 | 2017-02-24 | View |
Page 504 of 17672, showing 5 records out of 88360 total, starting on record 2516, ending on 2520