NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
84549 | CVE-2017-3538 | Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Shared Folder). Supported versions that are affected are Prior to 5.0.34 and Prior to 5.1.16. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle VM VirtualBox accessible data as well as unauthorized access to critical data or complete access to all Oracle VM VirtualBox accessible data. CVSS 3.0 Base Score 7.5 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N). | 2 | 6.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
85829 | CVE-2017-2498 | An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. The issue involves the Security component. It allows attackers to bypass intended access restrictions via an untrusted certificate. | 2 | 5 | Medium | 2017-07-18 | 2017-07-07 | View | |
87365 | CVE-2017-1297 | IBM DB2 for Linux, UNIX and Windows 9.2, 10.1, 10.5, and 11.1 (includes DB2 Connect Server) is vulnerable to a stack-based buffer overflow, caused by improper bounds checking which could allow a local attacker to execute arbitrary code. IBM X-Force ID: 125159. | 2 | 4.4 | Medium | 2017-07-18 | 2017-07-06 | View | |
87621 | CVE-2017-10600 | ubuntu-image 1.0 before 2017-07-07, when invoked as non-root, creates files in the resulting image with the uid of the invoking user. When the resulting image is booted, a local attacker with the same uid as the image creator has unintended access to cloud-init and snapd directories. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-17 | View | |
87877 | CVE-2017-1236 | IBM WebSphere MQ 9.0.2 could allow an authenticated user to potentially cause a denial of service by saving an incorrect channel status inquiry. IBM X-Force ID: 124354 | 2 | 4 | Medium | 2017-07-18 | 2017-07-17 | View |
Page 16678 of 17672, showing 5 records out of 88360 total, starting on record 83386, ending on 83390