NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86906 | CVE-2017-0647 | An information disclosure vulnerability in libziparchive could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access sensitive data without permission. Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-36392138. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-07 | View | |
87162 | CVE-2017-9735 | Jetty through 9.4.x is prone to a timing channel in util/security/Password.java, which makes it easier for remote attackers to obtain access by observing elapsed times before rejection of incorrect passwords. | 2 | 5 | Medium | 2017-07-18 | 2017-07-05 | View | |
87418 | CVE-2017-9869 | The II_step_one function in layer2.c in mpglib, as used in libmpgdecoder.a in LAME 3.99.5 and other products, allows remote attackers to cause a denial of service (buffer over-read and application crash) via a crafted audio file. | 2 | 4.3 | Medium | 2017-07-18 | 2017-06-28 | View | |
87674 | CVE-2017-10750 | XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a crafted .rle file, related to a User Mode Write AV near NULL starting at ntdll_77df0000!RtlEnterCriticalSection+0x0000000000000012. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
87930 | CVE-2017-2247 | Untrusted search path vulnerability in Self-extracting archive files created by Lhaz version 2.4.0 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory. | 2017-07-18 | 2017-07-17 | View |
Page 16956 of 17672, showing 5 records out of 88360 total, starting on record 84776, ending on 84780