NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85012 | CVE-2017-7991 | Exponent CMS 2.4.1 and earlier has SQL injection via a base64 serialized API key (apikey parameter) in the api function of framework/modules/eaas/controllers/eaasController.php. | 2 | 7.5 | High | 2017-05-07 | 2017-04-27 | View | |
19732 | CVE-2016-4006 | epan/proto.c in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 does not limit the protocol-tree depth, which allows remote attackers to cause a denial of service (stack memory consumption and application crash) via a crafted packet. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-02 | View | |
85268 | CVE-2016-10119 | Firejail uses 0777 permissions when mounting /tmp, which allows local users to gain privileges. | 2 | 7.2 | High | 2017-04-27 | 2017-04-19 | View | |
19988 | CVE-2016-4286 | Adobe Flash Player before 18.0.0.382 and 19.x through 23.x before 23.0.0.185 on Windows and OS X and before 11.2.202.637 on Linux allows attackers to bypass intended access restrictions via unspecified vectors. | 2 | 10 | High | 2017-01-19 | 2016-11-28 | View | |
85524 | CVE-2017-8339 | PSKMAD.sys in Panda Free Antivirus 18.0 allows local users to cause a denial of service (BSoD) via a crafted DeviceIoControl request to \.PSMEMDriver. | 2 | 4.9 | Medium | 2017-07-18 | 2017-07-17 | View |
Page 1390 of 17672, showing 5 records out of 88360 total, starting on record 6946, ending on 6950