NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
82500 | CVE-2016-6266 | ccca_ajaxhandler.php in Trend Micro Smart Protection Server 2.5 before build 2200, 2.6 before build 2106, and 3.0 before build 1330 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the (1) host or (2) apikey parameter in a register action, (3) enable parameter in a save_stting action, or (4) host or (5) apikey parameter in a test_connection action. | 2 | 6.5 | Medium | 2017-02-15 | 2017-02-09 | View | |
82499 | CVE-2016-10156 | A flaw in systemd v228 in /src/basic/fs-util.c caused world writable suid files to be created when using the systemd timers features, allowing local attackers to escalate their privileges to root. This is fixed in v229. | 2 | 7.2 | High | 2017-02-15 | 2017-02-10 | View | |
82498 | CVE-2017-5997 | The SAP Message Server HTTP daemon in SAP KERNEL 7.21-7.49 allows remote attackers to cause a denial of service (memory consumption and process crash) via multiple msgserver/group?group= requests with a crafted size of the group parameter, aka SAP Security Note 2358972. | 2 | 5 | Medium | 2017-02-28 | 2017-02-23 | View | |
82497 | CVE-2017-5992 | Openpyxl 2.4.1 resolves external entities by default, which allows remote attackers to conduct XXE attacks via a crafted .xlsx document. | 2 | 5.8 | Medium | 2017-02-28 | 2017-02-17 | View | |
82496 | CVE-2017-5896 | Heap-based buffer overflow in the fz_subsample_pixmap function in fitz/pixmap.c in MuPDF 1.10a allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted image. | 2 | 4.3 | Medium | 2017-07-18 | 2017-06-30 | View |
Page 1173 of 17672, showing 5 records out of 88360 total, starting on record 5861, ending on 5865