NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83780  CVE-2017-6460  Stack-based buffer overflow in the reslist function in ntpq in NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows remote servers have unspecified impact via a long flagstr variable in a restriction list response.    6.5  Medium  2017-04-27  2017-03-29  View
84036  CVE-2016-9470  Revive Adserver before 3.2.5 and 4.0.0 suffers from Reflected File Download. `www/delivery/asyncspc.php` was vulnerable to the fairly new Reflected File Download (RFD) web attack vector that enables attackers to gain complete control over a victim"s machine by virtually downloading a file from a trusted domain.    9.3  High  2017-03-29  2017-03-29  View
83781  CVE-2017-6462  Buffer overflow in the legacy Datum Programmable Time Server (DPTS) refclock driver in NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows local users to have unspecified impact via a crafted /dev/datum device.    4.6  Medium  2017-04-27  2017-03-29  View
84037  CVE-2016-9471  Revive Adserver before 3.2.5 and 4.0.0 suffers from Special Element Injection. Usernames weren"t properly sanitised when creating users on a Revive Adserver instance. Especially, control characters were not filtered, allowing apparently identical usernames to co-exist in the system, due to the fact that such characters are normally ignored when an HTML page is displayed in a browser. The issue could have therefore been exploited for user spoofing, although elevated privileges are required to create users within Revive Adserver.    2.1  Low  2017-03-29  2017-03-29  View
83782  CVE-2017-6463  NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows remote authenticated users to cause a denial of service (daemon crash) via an invalid setting in a :config directive, related to the unpeer option.    Medium  2017-04-27  2017-03-29  View

Page 15794 of 17672, showing 5 records out of 88360 total, starting on record 78966, ending on 78970

Actions