NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
86655  CVE-2017-8841  Arbitrary file deletion exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093. The attack methodology is absolute path traversal in cgi-bin/MANGA/firmware_process.cgi via the upfile.path parameter.    7.5  High  2017-06-17  2017-06-12  View
86656  CVE-2017-8871  The cr_parser_parse_selector_core function in cr-parser.c in libcroco 0.6.12 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a crafted CSS file.    7.1  High  2017-06-17  2017-06-15  View
86657  CVE-2017-8920  irc.cgi in CGI:IRC before 0.5.12 reflects user-supplied input from the R parameter without proper output encoding, aka XSS.    4.3  Medium  2017-06-17  2017-06-13  View
86660  CVE-2017-9122  The quicktime_read_moov function in moov.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a crafted mp4 file.    7.1  High  2017-06-17  2017-06-15  View
86661  CVE-2017-9123  The lqt_frame_duration function in lqt_quicktime.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted mp4 file.    4.3  Medium  2017-06-17  2017-06-15  View

Page 16186 of 17672, showing 5 records out of 88360 total, starting on record 80926, ending on 80930

Actions