NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85314 | CVE-2016-4873 | Cybozu Office 9.0.0 to 10.4.0 allows remote authenticated attackers to execute unintended operations via the Project function. | 2 | 4 | Medium | 2017-05-27 | 2017-05-22 | View | |
85570 | CVE-2017-8400 | In SWFTools 0.9.2, an out-of-bounds write of heap data can occur in the function png_load() in lib/png.c:755. This issue can be triggered by a malformed PNG file that is mishandled by png2swf. Attackers could exploit this issue for DoS; it might cause arbitrary code execution. | 2 | 6.8 | Medium | 2017-05-27 | 2017-05-12 | View | |
85826 | CVE-2017-2495 | An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. Safari before 10.1.1 is affected. The issue involves the Safari component. It allows remote attackers to cause a denial of service (application crash) via a crafted web site that improperly interacts with the history menu. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-07 | View | |
86082 | CVE-2017-8827 | forgotpassword.php in GeniXCMS 1.0.2 lacks a rate limit, which might allow remote attackers to cause a denial of service (login inability) or possibly conduct Arbitrary User Password Reset attacks via a series of requests. | 2 | 6.4 | Medium | 2017-05-27 | 2017-05-12 | View | |
86338 | CVE-2015-5381 | Cross-site scripting (XSS) vulnerability in program/include/rcmail.php in Roundcube Webmail 1.1.x before 1.1.2 allows remote attackers to inject arbitrary web script or HTML via the _mbox parameter to the default URI. | 2 | 4.3 | Medium | 2017-06-04 | 2017-05-31 | View |
Page 16017 of 17672, showing 5 records out of 88360 total, starting on record 80081, ending on 80085