NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83405 | CVE-2017-6527 | An issue was discovered in dnaTools dnaLIMS 4-2015s13. dnaLIMS is vulnerable to a NUL-terminated directory traversal attack allowing an unauthenticated attacker to access system files readable by the web server user (by using the viewAppletFsa.cgi seqID parameter). | 2 | 5 | Medium | 2017-03-18 | 2017-03-14 | View | |
83404 | CVE-2017-6526 | An issue was discovered in dnaTools dnaLIMS 4-2015s13. dnaLIMS is vulnerable to unauthenticated command execution through an improperly protected administrative web shell (cgi-bin/dna/sysAdmin.cgi POST requests). | 2 | 10 | High | 2017-03-18 | 2017-03-14 | View | |
83403 | CVE-2017-6518 | Cross-site scripting (XSS) vulnerability in /sanadata/seo/index.asp in SANADATA SanaCMS 7.3 allows remote attackers to inject arbitrary web script or HTML via the txtFrom parameter. | 2 | 4.3 | Medium | 2017-04-27 | 2017-03-29 | View | |
83402 | CVE-2017-6516 | A Local Privilege Escalation Vulnerability in MagniComp's Sysinfo before 10-H64 for Linux and UNIX platforms could allow a local attacker to gain elevated privileges. Parts of SysInfo require setuid-to-root access in order to access restricted system files and make restricted kernel calls. This access could be exploited by a local attacker to gain a root shell prompt using the right combination of environment variables and command line arguments. | 2 | 7.2 | High | 2017-04-27 | 2017-03-30 | View | |
83401 | CVE-2017-6513 | The WHMCS Reseller Module V2 2.0.2 in Softaculous Virtualizor before 2.9.1.0 does not verify the user correctly, which allows remote authenticated users to control other virtual machines managed by Virtualizor by accessing a modified URL. | 2 | 6.5 | Medium | 2017-04-27 | 2017-04-12 | View |
Page 992 of 17672, showing 5 records out of 88360 total, starting on record 4956, ending on 4960