NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85477 | CVE-2017-6629 | A vulnerability in the ImageID parameter of Cisco Unity Connection 10.5(2) could allow an unauthenticated, remote attacker to access files in arbitrary locations on the filesystem of an affected device. The issue is due to improper sanitization of user-supplied input in HTTP POST parameters that describe filenames. An attacker could exploit this vulnerability by using directory traversal techniques to submit a path to a desired file location. Cisco Bug IDs: CSCvd90118. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
20197 | CVE-2016-4584 | The WebKit Page Loading implementation in Apple iOS before 9.3.3, Safari before 9.1.2, and tvOS before 9.2.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site. | 2 | 6.8 | Medium | 2017-01-19 | 2016-11-28 | View | |
85733 | CVE-2017-0346 | All versions of the NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where the size of an input buffer is not validated, leading to denial of service or potential escalation of privileges. | 2 | 7.2 | High | 2017-05-27 | 2017-05-24 | View | |
20453 | CVE-2016-5101 | Unspecified vulnerability in Opera Mail before 2016-02-16 on Windows allows user-assisted remote attackers to execute arbitrary code via a crafted e-mail message. | 2 | 9.3 | High | 2017-01-19 | 2016-11-28 | View | |
20709 | CVE-2016-5459 | Unspecified vulnerability in the Siebel Core - Common Components component in Oracle Siebel CRM 8.1.1, 8.2.2, IP2014, IP2015, and IP2016 allows remote attackers to affect integrity via vectors related to iHelp. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View |
Page 15868 of 17672, showing 5 records out of 88360 total, starting on record 79336, ending on 79340