NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
86458  CVE-2017-2306  On Juniper Networks Junos Space versions prior to 16.1R1, due to an insufficient authorization check, readonly users on the Junos Space administrative web interface can execute code on the device.    6.5  Medium  2017-06-12  2017-06-08  View
21178  CVE-2016-6404  Cross-site scripting (XSS) vulnerability in the web framework in Cisco IOx Local Manager in IOS 15.5(2)T and IOS XE allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCuy19854.    4.3  Medium  2017-01-19  2016-11-28  View
21434  CVE-2016-6768  A remote code execution vulnerability in the Framesequence library could enable an attacker using a specially crafted file to execute arbitrary code in the context of an unprivileged process. This issue is rated as High due to the possibility of remote code execution in an application that uses the Framesequence library. Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0. Android ID: A-31631842.    6.8  Medium  2017-01-19  2017-01-17  View
21690  CVE-2016-7166  libarchive before 3.2.0 does not limit the number of recursive decompressions, which allows remote attackers to cause a denial of service (memory consumption and application crash) via a crafted gzip file.    4.3  Medium  2017-01-19  2016-09-28  View
21946  CVE-2016-7902  Unrestricted file upload vulnerability in the fileUnzip->unzip method in Dotclear before 2.10.3 allows remote authenticated users with permissions to manage media items to execute arbitrary code by uploading a ZIP file containing a file with a crafted extension, as demonstrated by .php.txt or .php%20.    6.5  Medium  2017-01-19  2017-01-06  View

Page 15211 of 17672, showing 5 records out of 88360 total, starting on record 76051, ending on 76055

Actions