NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85660 | CVE-2016-7841 | Cross-site scripting vulnerability in Olive Diary DX allows remote attackers to inject arbitrary web script or HTML via the page parameter. | 2 | 4.3 | Medium | 2017-05-08 | 2017-05-05 | View | |
85916 | CVE-2017-4017 | User Name Disclosure in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote attackers to view user information via the appliance web interface. | 2 | 5 | Medium | 2017-07-18 | 2017-07-07 | View | |
86172 | CVE-2017-9045 | The Google I/O 2017 application before 5.1.4 for Android downloads multiple .json files from http://storage.googleapis.com without SSL, which makes it easier for man-in-the-middle attackers to spoof Feed and Schedule data by creating a modified blocks_v4.json file. | 2 | 4.3 | Medium | 2017-06-03 | 2017-05-31 | View | |
86428 | CVE-2016-10330 | Directory traversal vulnerability in synophoto_dsm_user, a SUID program, as used in Synology Photo Station before 6.5.3-3226 allows local users to write to arbitrary files via unspecified vectors. | 2 | 4.6 | Medium | 2017-05-27 | 2017-05-23 | View | |
86684 | CVE-2017-9438 | libyara/re.c in the regexp module in YARA 3.5.0 allows remote attackers to cause a denial of service (stack consumption) via a crafted rule (involving hex strings) that is mishandled in the _yr_re_emit function, a different vulnerability than CVE-2017-9304. | 2 | 5 | Medium | 2017-06-12 | 2017-06-06 | View |
Page 1433 of 17672, showing 5 records out of 88360 total, starting on record 7161, ending on 7165