NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85502 | CVE-2017-8059 | Acceptance of invalid/self-signed TLS certificates in Foxit PDF - PDF reader, editor, form, signature before 5.4 for iOS allows a man-in-the-middle and/or physically proximate attacker to silently intercept login information (username/password), in addition to the static authentication token if the user is already logged in. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-17 | View | |
86083 | CVE-2017-8829 | Deserialization vulnerability in lintian through 2.5.50.3 allows attackers to trigger code execution by requesting a review of a source package with a crafted YAML file. | 2 | 6.8 | Medium | 2017-05-27 | 2017-05-16 | View | |
85572 | CVE-2017-8403 | 360fly 4K cameras allow unauthenticated Wi-Fi password changes and complete access with REST by using the Bluetooth Low Energy pairing procedure, which is available at any time and does not require a password. This affects firmware 2.1.4. Exploitation can use the 360fly Android or iOS application, or the BlueZ gatttool program. | 2 | 8.3 | High | 2017-05-27 | 2017-05-16 | View | |
86086 | CVE-2017-8832 | Allen Disk 1.6 has XSS in the id parameter to downfile.php. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-16 | View | |
86089 | CVE-2017-8843 | The join_pthread function in stream.c in liblrzip.so in lrzip 0.631 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted archive. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-16 | View |
Page 1658 of 17672, showing 5 records out of 88360 total, starting on record 8286, ending on 8290