NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83174  CVE-2017-3872  A cross-site scripting (XSS) filter bypass vulnerability in the web-based management interface of Cisco Unified Communications Manager could allow an unauthenticated, remote attacker to conduct XSS attacks against a user of an affected device. More Information: CSCvc21620. Known Affected Releases: 10.5(2.14076.1). Known Fixed Releases: 12.0(0.98000.641) 12.0(0.98000.500) 12.0(0.98000.219).    4.3  Medium  2017-07-18  2017-07-11  View
83686  CVE-2017-1120  IBM WebSphere Portal 8.5 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM Reference #: 2000152.    4.3  Medium  2017-07-18  2017-07-11  View
18406  CVE-2016-2109  The asn1_d2i_read_bio function in crypto/asn1/a_d2i_fp.c in the ASN.1 BIO implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote attackers to cause a denial of service (memory consumption) via a short invalid encoding.    7.8  High  2017-07-18  2017-07-12  View
84198  CVE-2017-0578  An elevation of privilege vulnerability in the DTS sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: N/A. Android ID: A-33964406.    7.6  High  2017-07-18  2017-07-10  View
85990  CVE-2017-6977  An issue was discovered in certain Apple products. macOS before 10.12.5 is affected. The issue involves the Speech Framework component. It allows attackers to conduct sandbox-escape attacks or cause a denial of service (memory corruption) via a crafted app.    6.8  Medium  2017-07-18  2017-07-07  View

Page 1250 of 17672, showing 5 records out of 88360 total, starting on record 6246, ending on 6250

Actions