NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
21500 | CVE-2016-6890 | Heap-based buffer overflow in MatrixSSL before 3.8.6 allows remote attackers to execute arbitrary code via a crafted Subject Alt Name in an X.509 certificate. | 2 | 10 | High | 2017-01-19 | 2017-01-06 | View | |
21756 | CVE-2016-7240 | The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory Corruption Vulnerability," a different vulnerability than CVE-2016-7200, CVE-2016-7201, CVE-2016-7202, CVE-2016-7203, CVE-2016-7208, CVE-2016-7242, and CVE-2016-7243. | 2 | 7.6 | High | 2017-01-19 | 2016-11-28 | View | |
87804 | CVE-2017-11167 | FineCMS 2.1.0 allows remote attackers to execute arbitrary PHP code by using a URL Manager Add Site action to enter this code after a ', sequence in a domain name, as demonstrated by the ',phpinfo() input value. | 2 | 7.5 | High | 2017-07-18 | 2017-07-14 | View | |
88060 | CVE-2017-6735 | A vulnerability in the backup and restore functionality of Cisco FireSIGHT System Software could allow an authenticated, local attacker to execute arbitrary code on a targeted system. More Information: CSCvc91092. Known Affected Releases: 6.2.0 6.2.1. | 2 | 7.2 | High | 2017-07-18 | 2017-07-13 | View | |
23548 | CVE-2015-1169 | Apereo Central Authentication Service (CAS) Server before 3.5.3 allows remote attackers to conduct LDAP injection attacks via a crafted username, as demonstrated by using a wildcard and a valid password to bypass LDAP authentication. | 2 | 7.5 | High | 2017-01-19 | 2015-02-11 | View |
Page 17225 of 17672, showing 5 records out of 88360 total, starting on record 86121, ending on 86125