NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85585 | CVE-2017-8768 | Atlassian SourceTree v2.5c and prior are affected by a command injection in the handling of the sourcetree:// scheme. It will lead to arbitrary OS command execution with a URL substring of sourcetree://cloneRepo/ext:: or sourcetree://checkoutRef/ext:: followed by the command. The Atlassian ID number is SRCTREE-4632. | 2 | 10 | High | 2017-05-27 | 2017-05-17 | View | |
86099 | CVE-2017-8853 | Fiyo CMS v2.0.7 has an arbitrary file delete vulnerability in dapur/apps/app_config/controller/backuper.php via directory traversal in the file parameter during an act=db action. | 2 | 6.4 | Medium | 2017-05-27 | 2017-05-17 | View | |
86100 | CVE-2017-8854 | wolfSSL before 3.10.2 has an out-of-bounds memory access with loading crafted DH parameters, aka a buffer overflow triggered by a malformed temporary DH file. | 2 | 6.8 | Medium | 2017-05-27 | 2017-05-17 | View | |
86101 | CVE-2017-8855 | wolfSSL before 3.11.0 does not prevent wc_DhAgree from accepting a malformed DH key. | 2 | 5 | Medium | 2017-05-27 | 2017-05-17 | View | |
85594 | CVE-2017-8787 | The PoDoFo::PdfXRefStreamParserObject::ReadXRefStreamEntry function in base/PdfXRefStreamParserObject.cpp:224 in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (heap-based buffer over-read) or possibly have unspecified other impact via a crafted PDF file. | 2 | 6.8 | Medium | 2017-05-27 | 2017-05-17 | View |
Page 1649 of 17672, showing 5 records out of 88360 total, starting on record 8241, ending on 8245