NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
85132  CVE-2016-2564  Invision Power Services (IPS) Community Suite before 4.1.9 makes session hijack easier by relying on the PHP uniqid function without the more_entropy flag. Attackers can guess an Invision Power Board session cookie if they can predict the exact time of cookie generation.          2017-04-27  2017-04-23  View
84993  CVE-2017-7951  WonderCMS before 2.0.3 has CSRF because of lack of a token in an unspecified context.    6.8  Medium  2017-04-27  2017-04-24  View
85251  CVE-2015-8256  Multiple cross-site scripting (XSS) vulnerabilities in Axis network cameras.    4.3  Medium  2017-04-27  2017-04-24  View
84999  CVE-2017-7975  Artifex jbig2dec 0.13, as used in Ghostscript, allows out-of-bounds writes because of an integer overflow in the jbig2_build_huffman_table function in jbig2_huffman.c during operations on a crafted JBIG2 file, leading to a denial of service (application crash) or possibly execution of arbitrary code.    6.8  Medium  2017-04-27  2017-04-24  View
85000  CVE-2017-7976  Artifex jbig2dec 0.13 allows out-of-bounds writes and reads because of an integer overflow in the jbig2_image_compose function in jbig2_image.c during operations on a crafted .jb2 file, leading to a denial of service (application crash) or disclosure of sensitive information from process memory.    5.8  Medium  2017-04-27  2017-04-24  View

Page 15888 of 17672, showing 5 records out of 88360 total, starting on record 79436, ending on 79440

Actions