NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
87059 | CVE-2017-8520 | Microsoft Edge in Windows 10 1703 allows an attacker to execute arbitrary code in the context of the current user when the Edge JavaScript scripting engine fails to handle objects in memory, aka Scripting Engine Memory Corruption Vulnerability. This CVE ID is unique from CVE-2017-8499, CVE-2017-8521, CVE-2017-8548, and CVE-2017-8549. | 2 | 7.6 | High | 2017-07-18 | 2017-07-07 | View | |
87061 | CVE-2017-8522 | Microsoft browsers in Microsoft Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allow an allow an attacker to execute arbitrary code in the context of the current user when the JavaScript engines fail to render when handling objects in memory in Microsoft browsers, aka Scripting Engine Memory Corruption Vulnerability. This CVE ID is unique from CVE-2017-8517 and CVE-2017-8524. | 2 | 7.6 | High | 2017-07-18 | 2017-07-07 | View | |
87063 | CVE-2017-8524 | Microsoft browsers in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allow an allow an attacker to execute arbitrary code in the context of the current user when the JavaScript engines fail to render when handling objects in memory in Microsoft browsers, aka Scripting Engine Memory Corruption Vulnerability. This CVE ID is unique from CVE-2017-8517 and CVE-2017-8522. | 2 | 7.6 | High | 2017-07-18 | 2017-07-07 | View | |
87064 | CVE-2017-8527 | Graphics in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows a remote code execution vulnerability due to the way it handles objects in memory, aka Windows Graphics Remote Code Execution Vulnerability. | 2 | 9.3 | High | 2017-07-18 | 2017-07-07 | View | |
86041 | CVE-2017-7620 | MantisBT before 1.3.11, 2.x before 2.3.3, and 2.4.x before 2.4.1 omits a backslash check in string_api.php and consequently has conflicting interpretations of an initial / substring as introducing either a local pathname or a remote hostname, which leads to (1) arbitrary Permalink Injection via CSRF attacks on a permalink_page.php?url= URI and (2) an open redirect via a login_page.php?return= URI. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-07 | View |
Page 1220 of 17672, showing 5 records out of 88360 total, starting on record 6096, ending on 6100