NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
18393 | CVE-2016-2089 | The jas_matrix_clip function in jas_seq.c in JasPer 1.900.1 allows remote attackers to cause a denial of service (invalid read and application crash) via a crafted JPEG 2000 image. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-05 | View | |
18905 | CVE-2016-2963 | Cross-site request forgery (CSRF) vulnerability in IBM BigFix Remote Control before 9.1.3 allows remote attackers to hijack the authentication of arbitrary users for requests that insert XSS sequences. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-02 | View | |
84697 | CVE-2017-5656 | Apache CXF's STSClient before 3.1.11 and 3.0.13 uses a flawed way of caching tokens that are associated with delegation tokens, which means that an attacker could craft a token which would return an identifer corresponding to a cached token for another user. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
19417 | CVE-2016-3620 | The ZIPEncode function in tif_zip.c in the bmp2tiff tool in LibTIFF 4.0.6 and earlier, when the "-c zip" option is used, allows remote attackers to cause a denial of service (buffer over-read) via a crafted BMP image. | 2 | 5 | Medium | 2017-01-19 | 2016-10-03 | View | |
84953 | CVE-2017-7853 | In libosip2 in GNU oSIP 4.1.0 and 5.0.0, a malformed SIP message can lead to a heap buffer overflow in the msg_osip_body_parse() function defined in osipparser2/osip_message_parse.c, resulting in a remote DoS. | 2 | 5 | Medium | 2017-05-27 | 2017-05-07 | View |
Page 16305 of 17672, showing 5 records out of 88360 total, starting on record 81521, ending on 81525