NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
18573  CVE-2016-2336  Type confusion exists in two methods of Ruby"s WIN32OLE class, ole_invoke and ole_query_interface. Attacker passing different type of object than this assumed by developers can cause arbitrary code execution.    7.5  High  2017-01-19  2017-01-10  View
19853  CVE-2016-4151  Unspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-083.    9.3  High  2017-01-19  2017-01-10  View
18574  CVE-2016-2337  Type confusion exists in _cancel_eval Ruby"s TclTkIp class method. Attacker passing different type of object than String as "retval" argument can cause arbitrary code execution.    7.5  High  2017-01-19  2017-01-10  View
19854  CVE-2016-4152  Unspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack vectors, a different vulnerability than other CVEs listed in MS16-083.    9.3  High  2017-01-19  2017-01-10  View
18575  CVE-2016-2339  An exploitable heap overflow vulnerability exists in the Fiddle::Function.new "initialize" function functionality of Ruby. In Fiddle::Function.new "initialize" heap buffer "arg_types" allocation is made based on args array length. Specially constructed object passed as element of args array can increase this array size after mentioned allocation and cause heap overflow.    7.5  High  2017-01-19  2017-01-10  View

Page 15216 of 17672, showing 5 records out of 88360 total, starting on record 76076, ending on 76080

Actions