NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
21723 | CVE-2016-7206 | Cross-site scripting (XSS) vulnerability in Microsoft Edge allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka "Microsoft Edge Information Disclosure Vulnerability," a different vulnerability than CVE-2016-7280. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-23 | View | |
21979 | CVE-2016-7964 | The sendRequest method in HTTPClient Class in file /inc/HTTPClient.php in DokuWiki 2016-06-26a and older, when media file fetching is enabled, has no way to restrict access to private networks. This allows users to scan ports of internal networks via SSRF, such as 10.0.0.1/8, 172.16.0.0/12, and 192.168.0.0/16. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-02 | View | |
87515 | CVE-2017-0685 | A denial of service vulnerability in the Android media framework. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-34203195. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-11 | View | |
87771 | CVE-2017-11098 | When SWFTools 0.9.2 processes a crafted file in png2swf, it can lead to a Segmentation Violation in the png_load() function in lib/png.c. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-13 | View | |
22491 | CVE-2016-9861 | An issue was discovered in phpMyAdmin. Due to the limitation in URL matching, it was possible to bypass the URL white-list protection. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected. | 2 | 5 | Medium | 2017-01-19 | 2016-12-23 | View |
Page 16377 of 17672, showing 5 records out of 88360 total, starting on record 81881, ending on 81885