NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
87690  CVE-2017-10766  XnView Classic for Windows Version 2.40 might allow attackers to cause a denial of service or possibly have unspecified other impact via a crafted .rle file, related to Data from Faulting Address controls Branch Selection starting at GDI32!ScriptStringAnalyse+0x00000000000001c8.    4.6  Medium  2017-07-18  2017-07-10  View
87946  CVE-2017-2298  The mcollective-sshkey-security plugin before 0.5.1 for Puppet uses a server-specified identifier as part of a path where a file is written. A compromised server could use this to write a file to an arbitrary location on the client with the filename appended with the string _pub.pem.    4.3  Medium  2017-07-18  2017-07-06  View
88202  CVE-2017-9313  Multiple Cross-site scripting (XSS) vulnerabilities in Webmin before 1.850 allow remote attackers to inject arbitrary web script or HTML via the sec parameter to view_man.cgi, the referers parameter to change_referers.cgi, or the name parameter to save_user.cgi. NOTE: these issues were not fixed in 1.840.    4.3  Medium  2017-07-18  2017-07-10  View
65931  CVE-2005-0156  Buffer overflow in the PerlIO implementation in Perl 5.8.0, when installed with setuid support (sperl), allows local users to execute arbitrary code by setting the PERLIO_DEBUG variable and executing a Perl script whose full pathname contains a long directory tree.    2.1  Low  2017-07-18  2017-07-10  View
66699  CVE-2005-0950  Directory traversal vulnerability in FastStone 4in1 Browser 1.2 allows remote attackers to read arbitrary files via a (1) ... (triple dot) or (2) .. (dot dot backslash) in the URL.    Medium  2017-07-18  2017-07-10  View

Page 16540 of 17672, showing 5 records out of 88360 total, starting on record 82696, ending on 82700

Actions