NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
20944 | CVE-2016-5771 | spl_array.c in the SPL extension in PHP before 5.5.37 and 5.6.x before 5.6.23 improperly interacts with the unserialize implementation and garbage collection, which allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free and application crash) via crafted serialized data. | 2 | 7.5 | High | 2017-01-19 | 2016-11-28 | View | |
86736 | CVE-2014-9928 | In GERAN in all Android releases from CAF using the Linux kernel, a Buffer Copy without Checking Size of Input vulnerability could potentially exist. | 2 | 9.3 | High | 2017-06-12 | 2017-06-09 | View | |
21456 | CVE-2016-6790 | An elevation of privilege vulnerability in the NVIDIA libomx library (libnvomx) could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as High because it could be used to gain local access to elevated capabilities, which are not normally accessible to a third-party application. Product: Android. Versions: Kernel-3.18. Android ID: A-31251628. References: N-CVE-2016-6790. | 2 | 9.3 | High | 2017-01-19 | 2017-01-18 | View | |
86992 | CVE-2017-7876 | QNAP QTS before 4.2.6 build 20170517 allows command injection. | 2 | 7.5 | High | 2017-06-23 | 2017-06-22 | View | |
21712 | CVE-2016-7194 | The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory Corruption Vulnerability," a different vulnerability than CVE-2016-3386, CVE-2016-3389, and CVE-2016-7190. | 2 | 7.6 | High | 2017-01-19 | 2016-11-28 | View |
Page 16020 of 17672, showing 5 records out of 88360 total, starting on record 80096, ending on 80100