NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86148 | CVE-2017-8939 | The Warner Bros. ellentube app 3.1.1 through 3.1.3 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-25 | View | |
86404 | CVE-2016-10239 | In TrustZone access control policy may potentially be bypassed in all Android releases from CAF using the Linux kernel due to improper input validation an integer overflow vulnerability leading to a buffer overflow could potentially occur and a buffer over-read vulnerability could potentially occur. | 2 | 9.3 | High | 2017-07-18 | 2017-07-10 | View | |
86660 | CVE-2017-9122 | The quicktime_read_moov function in moov.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a crafted mp4 file. | 2 | 7.1 | High | 2017-06-17 | 2017-06-15 | View | |
86916 | CVE-2017-1104 | IBM Quality Manager (RQM) 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 120666. | 2 | 3.5 | Low | 2017-07-18 | 2017-07-07 | View | |
87172 | CVE-2015-3254 | The client libraries in Apache Thrift before 0.9.3 might allow remote authenticated users to cause a denial of service (infinite recursion) via vectors involving the skip function. | 2 | 4 | Medium | 2017-06-23 | 2017-06-20 | View |
Page 16492 of 17672, showing 5 records out of 88360 total, starting on record 82456, ending on 82460