NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86306 | CVE-2017-9225 | An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7.1.5. A stack out-of-bounds write in onigenc_unicode_get_case_fold_codes_by_str() occurs during regular expression compilation. Code point 0xFFFFFFFF is not properly handled in unicode_unfold_key(). A malformed regular expression could result in 4 bytes being written off the end of a stack buffer of expand_case_fold_string() during the call to onigenc_unicode_get_case_fold_codes_by_str(), a typical stack buffer overflow. | 2 | 7.5 | High | 2017-06-03 | 2017-06-02 | View | |
86562 | CVE-2016-8230 | In Lenovo Service Bridge before version 4, an insecure HTTP connection is used by LSB to send system serial number, machine type and model and product name to Lenovo's servers. | 2 | 5 | Medium | 2017-06-12 | 2017-06-09 | View | |
86818 | CVE-2016-5648 | Acer Portal app before 3.9.4.2000 for Android does not properly validate SSL certificates, which allows remote attackers to perform a Man-in-the-middle attack via a crafted SSL certificate. | 2 | 4.3 | Medium | 2017-06-18 | 2017-06-15 | View | |
87074 | CVE-2017-8545 | A spoofing vulnerability exists in when Microsoft Outlook for Mac does not sanitize html properly, aka Microsoft Outlook for Mac Spoofing Vulnerability. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-07 | View | |
87330 | CVE-2017-9763 | The grub_ext2_read_block function in fs/ext2.c in GNU GRUB before 2013-11-12, as used in shlr/grub/fs/ext2.c in radare2 1.5.0, allows remote attackers to cause a denial of service (excessive stack use and application crash) via a crafted binary file, related to use of a variable-size stack array. | 2 | 5 | Medium | 2017-07-18 | 2017-07-05 | View |
Page 15760 of 17672, showing 5 records out of 88360 total, starting on record 78796, ending on 78800