NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
84012 | CVE-2016-9391 | The jpc_bitstream_getbits function in jpc_bs.c in JasPer before 2.0.10 allows remote attackers to cause a denial of service (assertion failure) via a very large integer. | 2 | 5 | Medium | 2017-03-29 | 2017-03-27 | View | |
83501 | CVE-2017-6958 | An XSS vulnerability in the MantisBT Source Integration Plugin (before 2.0.2) search result page allows an attacker to inject arbitrary HTML or JavaScript (if MantisBT's CSP settings permit it) by crafting any valid parameter. | 2 | 4.3 | Medium | 2017-03-29 | 2017-03-20 | View | |
84013 | CVE-2016-9392 | The calcstepsizes function in jpc_dec.c in JasPer before 1.900.17 allows remote attackers to cause a denial of service (assertion failure) via a crafted file. | 2 | 4.3 | Medium | 2017-03-29 | 2017-03-27 | View | |
83502 | CVE-2017-6960 | An issue was discovered in apng2gif 1.7. There is an integer overflow resulting in a heap-based buffer over-read, related to the load_apng function and the imagesize variable. | 2 | 5 | Medium | 2017-03-29 | 2017-03-20 | View | |
83758 | CVE-2017-6013 | Subrion CMS 4.0.5.10 has SQL injection in admin/database/ via the query parameter. | 2 | 7.5 | High | 2017-03-29 | 2017-03-28 | View |
Page 15730 of 17672, showing 5 records out of 88360 total, starting on record 78646, ending on 78650