NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86486 | CVE-2017-9249 | Cross-site scripting (XSS) vulnerability in Allen Disk 1.6 allows remote authenticated users to inject arbitrary web script or HTML persistently by uploading a crafted HTML file. The attack vector is the content of this file, and the filename must be specified in the PATH_INFO to readfile.php. | 2 | 3.5 | Low | 2017-06-12 | 2017-06-06 | View | |
86742 | CVE-2014-9944 | In the Secure File System in all Android releases from CAF using the Linux kernel, an Integer Overflow to Buffer Overflow vulnerability could potentially exist. | 2 | 9.3 | High | 2017-06-12 | 2017-06-09 | View | |
86231 | CVE-2017-9140 | Cross-site scripting (XSS) vulnerability in Telerik.ReportViewer.WebForms.dll in Telerik Reporting for ASP.NET WebForms Report Viewer control before R1 2017 SP2 (11.0.17.406) allows remote attackers to inject arbitrary web script or HTML via the bgColor parameter to Telerik.ReportViewer.axd. | 2 | 4.3 | Medium | 2017-06-12 | 2017-06-08 | View | |
86743 | CVE-2014-9945 | In TrustZone in all Android releases from CAF using the Linux kernel, an Improper Authorization vulnerability could potentially exist. | 2 | 9.3 | High | 2017-06-12 | 2017-06-08 | View | |
83160 | CVE-2017-3159 | Apache Camel's camel-snakeyaml component is vulnerable to Java object de-serialization vulnerability. De-serializing untrusted data can lead to security flaws. | 2 | 7.5 | High | 2017-06-12 | 2017-06-08 | View |
Page 1529 of 17672, showing 5 records out of 88360 total, starting on record 7641, ending on 7645