NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
84793 | CVE-2017-7306 | ** DISPUTED ** Riverbed RiOS through 9.6.0 has a weak default password for the secure vault, which makes it easier for physically proximate attackers to defeat the secure-vault protection mechanism by leveraging knowledge of the password algorithm and the appliance serial number. NOTE: the vendor believes that this does not meet the definition of a vulnerability. The product contains correct computational logic for supporting arbitrary password changes by customers; however, a password change is optional to meet different customers' needs. | 2 | 1.9 | Low | 2017-04-27 | 2017-04-10 | View | |
85049 | CVE-2017-8104 | In MyBB before 1.8.11, the smilie module allows Directory Traversal via the pathfolder parameter. | 2 | 5 | Medium | 2017-05-07 | 2017-04-28 | View | |
85561 | CVE-2017-8391 | The OS Installation Management component in CA Client Automation r12.9, r14.0, and r14.0 SP1 places an encrypted password into a readable local file during operating system installation, which allows local users to obtain sensitive information by reading this file after operating system installation. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-07 | View | |
85817 | CVE-2017-2164 | Cross-site scripting vulnerability in SOY CMS with installer 1.8.12 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-23 | View | |
86073 | CVE-2017-8538 | The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016, Microsoft Exchange Server 2013 and 2016, does not properly scan a specially crafted file leading to memory corruption. aka Microsoft Malware Protection Engine Remote Code Execution Vulnerability, a different vulnerability than CVE-2017-8540 and CVE-2017-8541. | 2 | 9.3 | High | 2017-07-18 | 2017-07-07 | View |
Page 695 of 17672, showing 5 records out of 88360 total, starting on record 3471, ending on 3475