NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
84775 | CVE-2017-7221 | OpenText Documentum Content Server has an inadequate protection mechanism against SQL injection, which allows remote authenticated users to execute arbitrary code with super-user privileges by leveraging the availability of the dm_bp_transition docbase method with a user-created dm_procedure object, as demonstrated by use of a backspace character in an injected string. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-2513. | 2 | 6.5 | Medium | 2017-05-07 | 2017-05-05 | View | |
84774 | CVE-2017-7220 | OpenText Documentum Content Server allows superuser access via sys_obj_save or save of a crafted object, followed by an unauthorized UPDATE dm_dbo.dm_user_s SET user_privileges=16 command, aka an RPC save-commands attack. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-4532. | 2 | 9 | High | 2017-05-07 | 2017-04-28 | View | |
84773 | CVE-2017-7219 | A heap overflow vulnerability in Citrix NetScaler Gateway versions 10.1 before 135.8/135.12, 10.5 before 65.11, 11.0 before 70.12, and 11.1 before 52.13 allows a remote authenticated attacker to run arbitrary commands via unspecified vectors. | 2 | 9 | High | 2017-07-18 | 2017-07-10 | View | |
84772 | CVE-2017-7218 | The Management Web Interface in Palo Alto Networks PAN-OS before 7.1.9 allows remote authenticated users to gain privileges via unspecified request parameters. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
84771 | CVE-2017-7217 | The Management Web Interface in Palo Alto Networks PAN-OS before 7.0.14 and 7.1.x before 7.1.9 allows remote attackers to write to export files via unspecified parameters. | 2 | 4 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 718 of 17672, showing 5 records out of 88360 total, starting on record 3586, ending on 3590