NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
18214 | CVE-2016-1867 | The jpc_pi_nextcprl function in JasPer 1.900.1 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted JPEG 2000 image. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-22 | View | |
83750 | CVE-2017-5931 | Integer overflow in hw/virtio/virtio-crypto.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (QEMU process crash) or possibly execute arbitrary code on the host via a crafted virtio-crypto request, which triggers a heap-based buffer overflow. | 2 | 7.2 | High | 2017-07-18 | 2017-06-30 | View | |
84262 | CVE-2017-2384 | An issue was discovered in certain Apple products. iOS before 10.3 is affected. The issue involves mishandling of deletion within the SQLite subsystem of the Safari component. It allows local users to identify the web-site visits that occurred in Private Browsing mode. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-11 | View | |
84518 | CVE-2017-3506 | Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: Web Services). Supported versions that are affected are 10.3.6.0, 12.1.3.0, 12.2.1.0, 12.2.1.1 and 12.2.1.2. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle WebLogic Server accessible data as well as unauthorized access to critical data or complete access to all Oracle WebLogic Server accessible data. CVSS 3.0 Base Score 7.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N). | 2 | 5.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
84774 | CVE-2017-7220 | OpenText Documentum Content Server allows superuser access via sys_obj_save or save of a crafted object, followed by an unauthorized UPDATE dm_dbo.dm_user_s SET user_privileges=16 command, aka an RPC save-commands attack. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-4532. | 2 | 9 | High | 2017-05-07 | 2017-04-28 | View |
Page 15792 of 17672, showing 5 records out of 88360 total, starting on record 78956, ending on 78960