NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
17430 | CVE-2016-10045 | The isMail transport in PHPMailer before 5.2.20 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code by leveraging improper interaction between the escapeshellarg function and internal escaping performed in the mail function in PHP. NOTE: this vulnerability exists because of an incorrect fix for CVE-2016-10033. | 2 | 7.5 | High | 2017-01-30 | 2017-01-25 | View | |
17686 | CVE-2016-1268 | The administrative web services interface in Juniper ScreenOS before 6.3.0r21 allows remote attackers to cause a denial of service (reboot) via a crafted SSL packet. | 2 | 7.8 | High | 2017-01-19 | 2016-12-02 | View | |
17942 | CVE-2016-1578 | Use-after-free vulnerability in Oxide allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via unspecified vectors, related to responding synchronously to permission requests. | 2 | 7.5 | High | 2017-01-19 | 2016-05-19 | View | |
18198 | CVE-2016-1851 | The Screen Lock feature in Apple OS X before 10.11.5 mishandles password profiles, which allows physically proximate attackers to reset expired passwords in the lock-screen state via unspecified vectors. | 2 | 2.1 | Low | 2017-01-19 | 2016-12-02 | View | |
18454 | CVE-2016-2184 | The create_fixed_stream_quirk function in sound/usb/quirks.c in the snd-usb-audio driver in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference or double free, and system crash) via a crafted endpoints value in a USB device descriptor. | 2 | 4.9 | Medium | 2017-01-19 | 2016-12-02 | View |
Page 1341 of 17672, showing 5 records out of 88360 total, starting on record 6701, ending on 6705