NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
88130 | CVE-2017-8420 | SWFTools 2013-04-09-1007 on Windows has a Data from Faulting Address controls Branch Selection starting at image00000000_00400000+0x0000000000003e71 issue. This issue can be triggered by a malformed TTF file that is mishandled by font2swf. Attackers could exploit this issue for DoS (Access Violation). | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-13 | View | |
85574 | CVE-2017-8419 | LAME through 3.99.5 relies on the signed integer data type for values in a WAV or AIFF header, which allows remote attackers to cause a denial of service (stack-based buffer overflow or heap-based buffer overflow) or possibly have unspecified other impact via a crafted file, as demonstrated by mishandling of num_channels. | 2 | 6.8 | Medium | 2017-05-27 | 2017-05-15 | View | |
85573 | CVE-2017-8418 | RuboCop 0.48.1 and earlier does not use /tmp in safe way, allowing local users to exploit this to tamper with cache files belonging to other users. | 2 | 2.1 | Low | 2017-05-27 | 2017-05-12 | View | |
85572 | CVE-2017-8403 | 360fly 4K cameras allow unauthenticated Wi-Fi password changes and complete access with REST by using the Bluetooth Low Energy pairing procedure, which is available at any time and does not require a password. This affects firmware 2.1.4. Exploitation can use the 360fly Android or iOS application, or the BlueZ gatttool program. | 2 | 8.3 | High | 2017-05-27 | 2017-05-16 | View | |
86480 | CVE-2017-8402 | PivotX 2.3.11 allows remote authenticated users to execute arbitrary PHP code via vectors involving an upload of a .htaccess file. | 2 | 6.5 | Medium | 2017-06-12 | 2017-06-08 | View |
Page 171 of 17672, showing 5 records out of 88360 total, starting on record 851, ending on 855