NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
86061  CVE-2017-8311  Potential heap based buffer overflow in ParseJSS in VideoLAN VLC before 2.2.5 due to skipping NULL terminator in an input string allows attackers to execute arbitrary code via a crafted subtitles file.    6.8  Medium  2017-07-18  2017-07-10  View
87085  CVE-2017-9231  XML external entity (XXE) vulnerability in Citrix XenMobile Server 9.x and 10.x before 10.5 RP3 allows attackers to obtain sensitive information via unspecified vectors.    Medium  2017-07-18  2017-07-06  View
87341  CVE-2017-9807  An issue was discovered in the OpenWebif plugin through 1.2.4 for E2 open devices. The saveConfig function of plugin/controllers/models/config.py performs an eval() call on the contents of the key HTTP GET parameter. This allows an unauthenticated remote attacker to execute arbitrary Python code or OS commands via api/saveconfig.    10  High  2017-07-18  2017-07-03  View
87597  CVE-2017-1000060  EyesOfNetwork (EON) 5.1 Unauthenticated SQL Injection in eonweb leading to remote root          2017-07-18  2017-07-17  View
87853  CVE-2017-11367  The shoco_decompress function in the API in shoco through 2017-07-17 allows remote attackers to cause a denial of service (buffer over-read and application crash) via malformed compressed data.          2017-07-18  2017-07-17  View

Page 16554 of 17672, showing 5 records out of 88360 total, starting on record 82766, ending on 82770

Actions