NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
38183  CVE-2013-2071  java/org/apache/catalina/core/AsyncContextImpl.java in Apache Tomcat 7.x before 7.0.40 does not properly handle the throwing of a RuntimeException in an AsyncListener in an application, which allows context-dependent attackers to obtain sensitive request information intended for other applications in opportunistic circumstances via an application that records the requests that it processes.    2.6  Low  2017-05-27  2017-05-22  View
85800  CVE-2017-0894  Nextcloud Server before 11.0.3 is vulnerable to disclosure of valid share tokens for public calendars due to a logical error. Thus granting an attacker potentially access to publicly shared calendars without knowing the share token.    4.3  Medium  2017-05-27  2017-05-17  View
86056  CVE-2017-8244  In core_info_read and inst_info_read in all Android releases from CAF using the Linux kernel, variable dbg_buf, dbg_buf->curr and dbg_buf->filled_size could be modified by different threads at the same time, but they are not protected with mutex or locks. Buffer overflow is possible on race conditions. buffer->curr itself could also be overwritten, which means that it may point to anywhere of kernel memory (for write).    6.9  Medium  2017-05-27  2017-05-26  View
85801  CVE-2017-0895  Nextcloud Server before 10.0.4 and 11.0.2 are vulnerable to disclosure of calendar and addressbook names to other logged-in users. Note that no actual content of the calendar and addressbook has been disclosed.    3.5  Low  2017-05-27  2017-05-18  View
86057  CVE-2017-8245  In all Android releases from CAF using the Linux kernel, while processing a voice SVC request which is nonstandard by specifying a payload size that will overflow its own declared size, an out of bounds memory copy occurs.    4.6  Medium  2017-05-27  2017-05-26  View

Page 15999 of 17672, showing 5 records out of 88360 total, starting on record 79991, ending on 79995

Actions