NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
17373  CVE-2016-1000124  Unauthenticated SQL Injection in Huge-IT Portfolio Gallery Plugin v1.0.6    7.5  High  2017-03-29  2017-03-28  View
84957  CVE-2017-7858  FreeType 2 before 2017-03-07 has an out-of-bounds write related to the TT_Get_MM_Var function in truetype/ttgxvar.c and the sfnt_init_face function in sfnt/sfobjs.c.    7.5  High  2017-07-18  2017-06-30  View
20189  CVE-2016-4576  Buffer overflow in the Application Specific Packet Filtering (ASPF) functionality in the Huawei IPS Module, NGFW Module, NIP6300, NIP6600, Secospace USG6300, USG6500, USG6600, USG9500, and AntiDDoS8000 devices with software before V500R001C20SPC100 allows remote attackers to cause a denial of service or execute arbitrary code via a crafted packet, related to "illegitimate parameters."    7.5  High  2017-01-19  2016-11-28  View
86493  CVE-2017-9264  In lib/conntrack.c in the firewall implementation in Open vSwitch (OvS) 2.6.1, there is a buffer over-read while parsing malformed TCP, UDP, and IPv6 packets in the functions `extract_l3_ipv6`, `extract_l4_tcp`, and `extract_l4_udp` that can be triggered remotely.    7.5  High  2017-06-12  2017-06-07  View
21981  CVE-2016-7966  Through a malicious URL that contained a quote character it was possible to inject HTML code in KMail"s plaintext viewer. Due to the parser used on the URL it was not possible to include the equal sign (=) or a space into the injected HTML, which greatly reduces the available HTML functionality. Although it is possible to include an HTML comment indicator to hide content.    7.5  High  2017-01-19  2016-12-27  View

Page 15327 of 17672, showing 5 records out of 88360 total, starting on record 76631, ending on 76635

Actions