NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
81735  CVE-2016-2779  runuser in util-linux allows local users to escape to the parent session via a crafted TIOCSTI ioctl call, which pushes characters to the terminal"s input buffer.          2017-02-08  2017-02-07  View
81734  CVE-2016-2539  Cross-site request forgery (CSRF) vulnerability in install_modules.php in ATutor before 2.2.2 allows remote attackers to hijack the authentication of users for requests that upload arbitrary files and execute arbitrary PHP code via vectors involving a crafted zip file.    6.8  Medium  2017-02-15  2017-02-15  View
81733  CVE-2016-2403  Symfony before 2.8.6 and 3.x before 3.0.6 allows remote attackers to bypass authentication by logging in with an empty password and valid username, which triggers an unauthenticated bind.    7.5  High  2017-02-28  2017-02-28  View
81732  CVE-2016-2318  GraphicsMagick 1.3.23 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted SVG file, related to the (1) DrawImage function in magick/render.c, (2) SVGStartElement function in coders/svg.c, and (3) TraceArcPath function in magick/render.c.    4.3  Medium  2017-02-08  2017-02-07  View
81731  CVE-2016-2317  Multiple buffer overflows in GraphicsMagick 1.3.23 allow remote attackers to cause a denial of service (crash) via a crafted SVG file, related to the (1) TracePoint function in magick/render.c, (2) GetToken function in magick/utility.c, and (3) GetTransformTokens function in coders/svg.c.    4.3  Medium  2017-02-08  2017-02-07  View

Page 1326 of 17672, showing 5 records out of 88360 total, starting on record 6626, ending on 6630

Actions