NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83244  CVE-2017-5833  Cross-site scripting (XSS) vulnerability in the invocation code generation for interstitial zones in Revive Adserver before 4.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.    4.3  Medium  2017-03-18  2017-03-06  View
17964  CVE-2016-1614  The UnacceleratedImageBufferSurface class in WebKit/Source/platform/graphics/UnacceleratedImageBufferSurface.cpp in Blink, as used in Google Chrome before 48.0.2564.82, mishandles the initialization mode, which allows remote attackers to obtain sensitive information from process memory via a crafted web site.    4.3  Medium  2017-01-19  2016-12-07  View
83500  CVE-2017-6955  An issue was discovered in by-email/by-email.php in the Invite Anyone plugin before 1.3.15 for WordPress. A user is able to change the subject and the body of the invitation mail that should be immutable, which facilitates a social engineering attack.    Medium  2017-03-29  2017-03-21  View
83756  CVE-2017-6003  dotCMS 3.7.0 has XSS reachable from ext/languages_manager/edit_language in portal/layout via the bottom two form fields.    4.3  Medium  2017-03-29  2017-03-28  View
84012  CVE-2016-9391  The jpc_bitstream_getbits function in jpc_bs.c in JasPer before 2.0.10 allows remote attackers to cause a denial of service (assertion failure) via a very large integer.    Medium  2017-03-29  2017-03-27  View

Page 1599 of 17672, showing 5 records out of 88360 total, starting on record 7991, ending on 7995

Actions