NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
82419 | CVE-2016-8678 | The IsPixelMonochrome function in MagickCore/pixel-accessor.h in ImageMagick 7.0.3.0 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted file. NOTE: the vendor says "This is a Q64 issue and we do not support Q64." | 2 | 4.3 | Medium | 2017-02-28 | 2017-02-22 | View | |
17139 | CVE-2016-0772 | The smtplib library in CPython (aka Python) before 2.7.12, 3.x before 3.4.5, and 3.5.x before 3.5.2 does not return an error when StartTLS fails, which might allow man-in-the-middle attackers to bypass the TLS protections by leveraging a network position between the client and the registry to block the StartTLS command, aka a "StartTLS stripping attack." | 2 | 5.8 | Medium | 2017-01-19 | 2016-12-23 | View | |
82675 | CVE-2016-4660 | An issue was discovered in certain Apple products. iOS before 10.1 is affected. macOS before 10.12.1 is affected. tvOS before 10.0.1 is affected. watchOS before 3.1 is affected. The issue involves the "FontParser" component. It allows remote attackers to obtain sensitive information or cause a denial of service (out-of-bounds read and application crash) via a crafted font. | 2 | 5.8 | Medium | 2017-02-28 | 2017-02-21 | View | |
17395 | CVE-2016-1000146 | Reflected XSS in wordpress plugin pondol-formmail v1.1 | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View | |
17651 | CVE-2016-1212 | Directory traversal vulnerability in futomi MP Form Mail CGI Professional Edition 3.2.3 and earlier allows remote authenticated administrators to read arbitrary files via unspecified vectors. | 2 | 4 | Medium | 2017-01-19 | 2016-06-06 | View |
Page 17216 of 17672, showing 5 records out of 88360 total, starting on record 86076, ending on 86080