NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
86697  CVE-2017-9465  The yr_arena_write_data function in YARA 3.6.1 allows remote attackers to cause a denial of service (buffer over-read and application crash) or obtain sensitive information from process memory via a crafted file that is mishandled in the yr_re_fast_exec function in libyara/re.c and the _yr_scan_match_callback function in libyara/scan.c.    5.8  Medium  2017-06-17  2017-06-14  View
86953  CVE-2017-6671  A vulnerability in the email message scanning of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass configured filters on the device, as demonstrated by the Attachment Filter. More Information: CSCvd34632. Known Affected Releases: 10.0.1-087 9.7.1-066. Known Fixed Releases: 10.0.2-020 9.8.1-015.    Medium  2017-07-18  2017-07-07  View
87209  CVE-2016-10363  Logstash versions prior to 2.3.3, when using the Netflow Codec plugin, a remote attacker crafting malicious Netflow v5, Netflow v9 or IPFIX packets could perform a denial of service attack on the Logstash instance. The errors resulting from these crafted inputs are not handled by the codec and can cause the Logstash process to exit.          2017-06-18  2017-06-16  View
87465  CVE-2015-7781  ManageEngine Firewall Analyzer before 8.0 does not restrict access permissions.          2017-06-28  2017-06-27  View
87721  CVE-2017-10805  In Odoo 8.0, Odoo Community Edition 9.0 and 10.0, and Odoo Enterprise Edition 9.0 and 10.0, incorrect access control on OAuth tokens in the OAuth module allows remote authenticated users to hijack OAuth sessions of other users.    6.5  Medium  2017-07-18  2017-07-12  View

Page 1535 of 17672, showing 5 records out of 88360 total, starting on record 7671, ending on 7675

Actions