NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
86715  CVE-2017-9526  In Libgcrypt before 1.7.7, an attacker who learns the EdDSA session key (from side-channel observation during the signing process) can easily recover the long-term secret key. 1.7.7 makes a cipher/ecc-eddsa.c change to store this session key in secure memory, to ensure that constant-time point operations are used in the MPI library.    4.3  Medium  2017-06-23  2017-06-22  View
86716  CVE-2017-9527  The mark_context_stack function in gc.c in mruby through 1.2.0 allows attackers to cause a denial of service (heap-based use-after-free and application crash) or possibly have unspecified other impact via a crafted .rb file.    6.8  Medium  2017-06-23  2017-06-22  View
86717  CVE-2017-9542  D-Link DIR-615 Wireless N 300 Router allows authentication bypass via a modified POST request to login.cgi. This issue occurs because it fails to validate the password field. Successful exploitation of this issue allows an attacker to take control of the affected device.    10  High  2017-06-23  2017-06-22  View
86718  CVE-2017-9543  register.ghp in EFS Software Easy Chat Server versions 2.0 to 3.1 allows remote attackers to reset arbitrary passwords via a crafted POST request to registresult.htm.    Medium  2017-06-23  2017-06-22  View
86719  CVE-2017-9544  There is a remote stack-based buffer overflow (SEH) in register.ghp in EFS Software Easy Chat Server versions 2.0 to 3.1. By sending an overly long username string to registresult.htm for registering the user, an attacker may be able to execute arbitrary code.    7.5  High  2017-06-23  2017-06-22  View

Page 1426 of 17672, showing 5 records out of 88360 total, starting on record 7126, ending on 7130

Actions