NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86921 | CVE-2017-1278 | IBM DOORS Next Generation (DNG/RRC) 4.0, 5.0 and 6.0 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site. IBM X-Force ID: 124756. | 2 | 3.5 | Low | 2017-06-17 | 2017-06-16 | View | |
87177 | CVE-2015-9022 | In all Android releases from CAF using the Linux kernel, time-of-check Time-of-use (TOCTOU) Race Conditions exist in several TZ APIs. | 2 | 7.6 | High | 2017-06-23 | 2017-06-19 | View | |
87433 | CVE-2017-9984 | The snd_msnd_interrupt function in sound/isa/msnd/msnd_pinnacle.c in the Linux kernel through 4.11.7 allows local users to cause a denial of service (over-boundary access) or possibly have unspecified other impact by changing the value of a message queue head pointer between two kernel reads of that value, aka a double fetch vulnerability. | 2 | 7.2 | High | 2017-07-18 | 2017-06-30 | View | |
87689 | CVE-2017-10765 | XnView Classic for Windows Version 2.40 might allow attackers to cause a denial of service or possibly have unspecified other impact via a crafted .rle file, related to Data from Faulting Address controls Branch Selection starting at IMM32!ImmLockImeDpi+0x0000000000000050. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
87945 | CVE-2017-2295 | Versions of Puppet prior to 4.10.1 will deserialize data off the wire (from the agent to the server, in this case) with a attacker-specified format. This could be used to force YAML deserialization in an unsafe manner, which would lead to remote code execution. This change constrains the format of data on the wire to PSON or safely decoded YAML. | 2 | 6 | Medium | 2017-07-18 | 2017-07-14 | View |
Page 16531 of 17672, showing 5 records out of 88360 total, starting on record 82651, ending on 82655