NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
22729 | CVE-2015-0232 | The exif_process_unicode function in ext/exif/exif.c in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (uninitialized pointer free and application crash) via crafted EXIF data in a JPEG image. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-30 | View | |
88265 | CVE-2017-9903 | XnView Classic for Windows Version 2.40 allows remote attackers to execute code via a crafted .fpx file, related to Data from Faulting Address controls Code Flow starting at Xfpx+0x00000000000117ff. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
22985 | CVE-2015-0510 | Unspecified vulnerability in the Oracle Commerce Platform component in Oracle Commerce Platform 9.4, 10.0, and 10.2 allows remote attackers to affect integrity via vectors related to Dynamo Application Framework - HTML Admin User Interface. | 2 | 4.3 | Medium | 2017-01-19 | 2015-04-17 | View | |
23497 | CVE-2015-1111 | Safari in Apple iOS before 8.3 does not delete Recently Closed Tabs data in response to a history-clearing action, which allows attackers to obtain sensitive information by reading a history file. | 2 | 5 | Medium | 2017-01-19 | 2017-01-02 | View | |
23753 | CVE-2015-1432 | The message_options function in includes/ucp/ucp_pm_options.php in phpBB before 3.0.13 does not properly validate the form key, which allows remote attackers to conduct CSRF attacks and change the full folder setting via unspecified vectors. | 2 | 6.8 | Medium | 2017-01-19 | 2015-02-11 | View |
Page 15735 of 17672, showing 5 records out of 88360 total, starting on record 78671, ending on 78675