NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83775 | CVE-2017-6451 | The mx4200_send function in the legacy MX4200 refclock in NTP before 4.2.8p10 and 4.3.x before 4.3.94 does not properly handle the return value of the snprintf function, which allows local users to execute arbitrary code via unspecified vectors, which trigger an out-of-bounds memory write. | 2 | 4.6 | Medium | 2017-04-27 | 2017-03-30 | View | |
84799 | CVE-2017-7321 | setup/controllers/welcome.php in MODX Revolution 2.5.4-pl and earlier allows remote attackers to execute arbitrary PHP code via the config_key parameter to the setup/index.php?action=welcome URI. | 2 | 7.5 | High | 2017-04-27 | 2017-03-31 | View | |
83776 | CVE-2017-6452 | Stack-based buffer overflow in the Windows installer for NTP before 4.2.8p10 and 4.3.x before 4.3.94 allows local users to have unspecified impact via an application path on the command line. | 2 | 4.6 | Medium | 2017-04-27 | 2017-03-29 | View | |
84800 | CVE-2017-7322 | The (1) update and (2) package-installation features in MODX Revolution 2.5.4-pl and earlier do not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and trigger the execution of arbitrary code via a crafted certificate. | 2 | 6.8 | Medium | 2017-04-27 | 2017-03-31 | View | |
85312 | CVE-2016-4871 | Cybozu Office 9.0.0 through 10.4.0 allows remote attackers to cause a denial of service. | 2 | 6.8 | Medium | 2017-04-27 | 2017-04-20 | View |
Page 15823 of 17672, showing 5 records out of 88360 total, starting on record 79111, ending on 79115