NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
27424  CVE-2015-6527  The php_str_replace_in_subject function in ext/standard/string.c in PHP 7.x before 7.0.0 allows remote attackers to execute arbitrary code via a crafted value in the third argument to the str_ireplace function.    7.5  High  2017-01-19  2016-01-21  View
27680  CVE-2015-6862  HPE UCMDB Browser before 4.02 allows remote attackers to obtain sensitive information or bypass intended access restrictions via unspecified vectors.    7.2  High  2017-01-19  2016-12-07  View
28704  CVE-2015-8607  The canonpath function in the File::Spec module in PathTools before 3.62, as used in Perl, does not properly preserve the taint attribute of data, which might allow context-dependent attackers to bypass the taint protection mechanism via a crafted string.    7.5  High  2017-02-06  2017-01-31  View
28960  CVE-2014-0003  The XSLT component in Apache Camel 2.11.x before 2.11.4, 2.12.x before 2.12.3, and possibly earlier versions allows remote attackers to execute arbitrary Java methods via a crafted message.    7.5  High  2017-01-19  2014-04-19  View
29216  CVE-2014-0316  Memory leak in the Local RPC (LRPC) server implementation in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows remote attackers to cause a denial of service (memory consumption) and bypass the ASLR protection mechanism via a crafted client that sends messages with an invalid data view, aka "LRPC ASLR Bypass Vulnerability."    7.5  High  2017-01-19  2017-01-06  View

Page 1218 of 17672, showing 5 records out of 88360 total, starting on record 6086, ending on 6090

Actions