NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
81094  CVE-2002-2143  The admin.html file in MySimple News 1.0 stores its administrative password in plaintext, which allows remote attackers to gain unauthorized access to the web server by viewing the source of admin.html.    7.5  High  2017-01-05  2008-09-05  View
17350  CVE-2016-1000003  Mirror Manager version 0.7.2 and older is vulnerable to remote code execution in the checkin code.    7.5  High  2017-01-19  2016-12-22  View
20166  CVE-2016-4544  The exif_process_TIFF_in_JPEG function in ext/exif/exif.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 does not validate TIFF start data, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via crafted header data.    7.5  High  2017-01-19  2016-11-30  View
87238  CVE-2017-1000375  NetBSD maps the run-time link-editor ld.so directly below the stack region, even if ASLR is enabled, this allows attackers to more easily manipulate memory leading to arbitrary code execution. This affects NetBSD 7.1 and possibly earlier versions.    7.5  High  2017-07-18  2017-06-29  View
22470  CVE-2016-9836  The file scanning mechanism of JFilterInput::isFileSafe() in Joomla! CMS before 3.6.5 does not consider alternative PHP file extensions when checking uploaded files for PHP content, which enables a user to upload and execute files with the `.php6`, `.php7`, `.phtml`, and `.phpt` extensions. Additionally, JHelperMedia::canUpload() did not blacklist these file extensions as uploadable file types.    7.5  High  2017-01-19  2016-12-07  View

Page 15040 of 17672, showing 5 records out of 88360 total, starting on record 75196, ending on 75200

Actions