NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
87633 | CVE-2017-10673 | admin/profile.php in GetSimple CMS 3.x has XSS in a name field. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-03 | View | |
87632 | CVE-2017-10672 | Use-after-free in the XML-LibXML module through 2.0129 for Perl allows remote attackers to execute arbitrary code by controlling the arguments to a replaceChild call. | 2 | 7.5 | High | 2017-07-18 | 2017-07-05 | View | |
87631 | CVE-2017-10671 | Heap-based Buffer Overflow in the de_dotdot function in libhttpd.c in sthttpd before 2.27.1 allows remote attackers to cause a denial of service (daemon crash) or possibly have unspecified other impact via a crafted filename. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-03 | View | |
87630 | CVE-2017-10670 | An XML External Entity (XXE) issue exists in OSCI-Transport 1.2 as used in OSCI Transport Library 1.6.1 (Java) and OSCI Transport Library 1.6 (.NET), exploitable by sending a crafted standard-conforming OSCI message from within the infrastructure. | 2 | 7.5 | High | 2017-07-18 | 2017-07-06 | View | |
87629 | CVE-2017-10669 | Signature Wrapping exists in OSCI-Transport 1.2 as used in OSCI Transport Library 1.6.1 (Java) and OSCI Transport Library 1.6 (.NET). An attacker with access to unencrypted OSCI protocol messages must send crafted protocol messages with duplicate IDs. | 2 | 6.4 | Medium | 2017-07-18 | 2017-07-06 | View |
Page 835 of 17672, showing 5 records out of 88360 total, starting on record 4171, ending on 4175