NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
84361  CVE-2017-2484  An issue was discovered in certain Apple products. iOS before 10.3 is affected. The issue involves the Phone component. It allows attackers to trigger telephone calls to arbitrary numbers via a third-party app.    Medium  2017-07-18  2017-07-11  View
84617  CVE-2017-3609  Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version that is affected is Prior to 6.2.32. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where Data Store executes to compromise Data Store. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of Data Store. CVSS 3.0 Base Score 7.0 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H).    3.7  Low  2017-05-07  2017-05-01  View
84873  CVE-2017-7583  ILIAS before 5.2.3 has XSS via SVG documents.    4.3  Medium  2017-06-03  2017-06-01  View
85385  CVE-2017-2103  The LaLa Call App for Android 2.4.7 and earlier does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.    4.3  Medium  2017-05-27  2017-05-10  View
85641  CVE-2016-7053  In OpenSSL 1.1.0 before 1.1.0c, applications parsing invalid CMS structures can crash with a NULL pointer dereference. This is caused by a bug in the handling of the ASN.1 CHOICE type in OpenSSL 1.1.0 which can result in a NULL value being passed to the structure callback if an attempt is made to free certain invalid encodings. Only CHOICE structures using a callback which do not handle NULL value are affected.          2017-05-08  2017-05-05  View

Page 1281 of 17672, showing 5 records out of 88360 total, starting on record 6401, ending on 6405

Actions