NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 82588 | CVE-2017-5927 | Page table walks conducted by the MMU during virtual to physical address translation leave a trace in the last level cache of modern ARM processors. By performing a side-channel attack on the MMU operations, it is possible to leak data and code pointers from JavaScript, breaking ASLR. | 2 | 5 | Medium | 2017-03-18 | 2017-03-01 | View | |
| 82595 | CVE-2017-6001 | Race condition in kernel/events/core.c in the Linux kernel before 4.9.7 allows local users to gain privileges via a crafted application that makes concurrent perf_event_open system calls for moving a software group into a hardware context. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-6786. | 2 | 7.6 | High | 2017-03-18 | 2017-03-01 | View | |
| 82608 | CVE-2017-6076 | In versions of wolfSSL before 3.10.2 the function fp_mul_comba makes it easier to extract RSA key information for a malicious user who has access to view cache on a machine. | 2 | 2.1 | Low | 2017-03-18 | 2017-03-01 | View | |
| 82609 | CVE-2017-6077 | ping.cgi on NETGEAR DGN2200 devices with firmware through 10.0.0.50 allows remote authenticated users to execute arbitrary OS commands via shell metacharacters in the ping_IPAddr field of an HTTP POST request. | 2 | 10 | High | 2017-03-18 | 2017-03-01 | View | |
| 82615 | CVE-2017-6099 | Cross-site scripting (XSS) vulnerability in GetAuthDetails.html.php in PayPal PHP Merchant SDK (aka merchant-sdk-php) 3.9.1 allows remote attackers to inject arbitrary web script or HTML via the token parameter. | 2 | 4.3 | Medium | 2017-03-18 | 2017-03-01 | View |
Page 15614 of 17672, showing 5 records out of 88360 total, starting on record 78066, ending on 78070