NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
82257  CVE-2017-5941  An issue was discovered in the node-serialize package 0.0.4 for Node.js. Untrusted data passed into the unserialize() function can be exploited to achieve arbitrary code execution by passing a JavaScript Object with an Immediately Invoked Function Expression (IIFE).    7.5  High  2017-03-18  2017-02-28  View
82258  CVE-2017-5942  An issue was discovered in the WP Mail plugin before 1.2 for WordPress. The replyto parameter when composing a mail allows for a reflected XSS. This would allow you to execute JavaScript in the context of the user receiving the mail.    4.3  Medium  2017-03-18  2017-02-28  View
81764  CVE-2016-3180  Tor Browser Launcher (aka torbrowser-launcher) before 0.2.4, during the initial run, allows man-in-the-middle attackers to bypass the PGP signature verification and execute arbitrary code via a Trojan horse tar file and a signature file with the valid tarball and signature.    6.8  Medium  2017-02-28  2017-02-28  View
82533  CVE-2017-2374  An issue was discovered in certain Apple products. GarageBand before 10.1.6 is affected. The issue involves the Projects component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted GarageBand project file.    6.8  Medium  2017-03-18  2017-02-28  View
82540  CVE-2017-3821  A vulnerability in the serviceability page of Cisco Unified Communications Manager could allow an unauthenticated, remote attacker to conduct reflected cross-site scripting (XSS) attacks. More Information: CSCvc49348. Known Affected Releases: 10.5(2.14076.1). Known Fixed Releases: 12.0(0.98000.209) 12.0(0.98000.478) 12.0(0.98000.609).    4.3  Medium  2017-03-18  2017-02-28  View

Page 15602 of 17672, showing 5 records out of 88360 total, starting on record 78006, ending on 78010

Actions