NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 20164 | CVE-2016-4542 | The exif_process_IFD_TAG function in ext/exif/exif.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 does not properly construct spprintf arguments, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via crafted header data. | 2 | 7.5 | High | 2017-01-19 | 2016-11-30 | View | |
| 86212 | CVE-2017-9101 | import.php (aka the Phonebook import feature) in PlaySMS 1.4 allows remote code execution via vectors involving the User-Agent HTTP header and PHP code in the name of a file. | 2 | 7.5 | High | 2017-06-03 | 2017-06-01 | View | |
| 29124 | CVE-2014-0211 | Multiple integer overflows in the (1) fs_get_reply, (2) fs_alloc_glyphs, and (3) fs_read_extent_info functions in X.Org libXfont before 1.4.8 and 1.4.9x before 1.4.99.901 allow remote font servers to execute arbitrary code via a crafted xfs reply, which triggers a buffer overflow. | 2 | 7.5 | High | 2017-01-19 | 2017-01-06 | View | |
| 29380 | CVE-2014-0487 | APT before 1.0.9 does not verify downloaded files if they have been modified as indicated using the If-Modified-Since header, which has unspecified impact and attack vectors. | 2 | 7.5 | High | 2017-01-19 | 2014-11-04 | View | |
| 40132 | CVE-2013-4540 | Buffer overflow in scoop_gpio_handler_update in QEMU before 1.7.2 might allow remote attackers to execute arbitrary code via a large (1) prev_level, (2) gpio_level, or (3) gpio_dir value in a savevm image. | 2 | 7.5 | High | 2017-01-18 | 2015-11-20 | View |
Page 15015 of 17672, showing 5 records out of 88360 total, starting on record 75071, ending on 75075