NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
28183  CVE-2015-7696  Info-ZIP UnZip 6.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly execute arbitrary code via a crafted password-protected ZIP archive, possibly related to an Extra-Field size value.    6.8  Medium  2017-01-19  2016-12-07  View
28439  CVE-2015-8105  Cross-site scripting (XSS) vulnerability in program/js/app.js in Roundcube webmail before 1.0.7 and 1.1.x before 1.1.3 allows remote authenticated users to inject arbitrary web script or HTML via the file name in a drag-n-drop file upload.    3.5  Low  2017-01-19  2016-12-02  View
28695  CVE-2015-8581  The EjbObjectInputStream class in Apache TomEE allows remote attackers to execute arbitrary commands via a serialized Java stream.    7.5  High  2017-01-19  2015-12-17  View
28951  CVE-2015-8964  The tty_set_termios_ldisc function in drivers/tty/tty_ldisc.c in the Linux kernel before 4.5 allows local users to obtain sensitive information from kernel memory by reading a tty data structure.    7.1  High  2017-01-19  2016-11-28  View
29207  CVE-2014-0307  Use-after-free vulnerability in Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a certain sequence of manipulations of a TextRange element, aka "Internet Explorer Memory Corruption Vulnerability."    9.3  High  2017-01-19  2016-09-09  View

Page 1410 of 17672, showing 5 records out of 88360 total, starting on record 7046, ending on 7050

Actions