NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
21500  CVE-2016-6890  Heap-based buffer overflow in MatrixSSL before 3.8.6 allows remote attackers to execute arbitrary code via a crafted Subject Alt Name in an X.509 certificate.    10  High  2017-01-19  2017-01-06  View
21756  CVE-2016-7240  The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory Corruption Vulnerability," a different vulnerability than CVE-2016-7200, CVE-2016-7201, CVE-2016-7202, CVE-2016-7203, CVE-2016-7208, CVE-2016-7242, and CVE-2016-7243.    7.6  High  2017-01-19  2016-11-28  View
87804  CVE-2017-11167  FineCMS 2.1.0 allows remote attackers to execute arbitrary PHP code by using a URL Manager Add Site action to enter this code after a ', sequence in a domain name, as demonstrated by the ',phpinfo() input value.    7.5  High  2017-07-18  2017-07-14  View
88060  CVE-2017-6735  A vulnerability in the backup and restore functionality of Cisco FireSIGHT System Software could allow an authenticated, local attacker to execute arbitrary code on a targeted system. More Information: CSCvc91092. Known Affected Releases: 6.2.0 6.2.1.    7.2  High  2017-07-18  2017-07-13  View
23548  CVE-2015-1169  Apereo Central Authentication Service (CAS) Server before 3.5.3 allows remote attackers to conduct LDAP injection attacks via a crafted username, as demonstrated by using a wildcard and a valid password to bypass LDAP authentication.    7.5  High  2017-01-19  2015-02-11  View

Page 17225 of 17672, showing 5 records out of 88360 total, starting on record 86121, ending on 86125

Actions