NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83234 | CVE-2017-5665 | The splt_cue_export_to_file function in cue.c in libmp3splt 0.9.2 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted file. | 2 | 4.3 | Medium | 2017-03-18 | 2017-03-02 | View | |
83490 | CVE-2017-6909 | An issue was discovered in Shimmie <= 2.5.1. The vulnerability exists due to insufficient filtration of user-supplied data (log) passed to the shimmie2-master/ext/chatbox/history/index.php URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website. | 2 | 4.3 | Medium | 2017-03-29 | 2017-03-23 | View | |
83746 | CVE-2017-5874 | CSRF exists on D-Link DIR-600M Rev. Cx devices before v3.05ENB01_beta_20170306. This can be used to bypass authentication and insert XSS sequences or possibly have unspecified other impact. | 2 | 6.8 | Medium | 2017-03-29 | 2017-03-23 | View | |
84002 | CVE-2016-9262 | Multiple integer overflows in the (1) jas_realloc function in base/jas_malloc.c and (2) mem_resize function in base/jas_stream.c in JasPer before 1.900.22 allow remote attackers to cause a denial of service via a crafted image, which triggers use after free vulnerabilities. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
84258 | CVE-2017-2380 | An issue was discovered in certain Apple products. iOS before 10.3 is affected. The issue involves the Simple Certificate Enrollment Protocol (SCEP) implementation in the Profiles component. It allows remote attackers to bypass cryptographic protection mechanisms by leveraging DES support. | 2 | 5 | Medium | 2017-06-23 | 2017-06-21 | View |
Page 1245 of 17672, showing 5 records out of 88360 total, starting on record 6221, ending on 6225