NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
87746  CVE-2017-10968  In FineCMS through 2017-07-07, applicationcorecontroller emplate.php allows remote PHP code execution by placing the code after <?php in a route=template request.    7.5  High  2017-07-18  2017-07-17  View
88002  CVE-2017-5529  JasperReports library components contain an information disclosure vulnerability. This vulnerability includes the theoretical disclosure of any accessible information from the host file system. Affects TIBCO JasperReports Library Community Edition (versions 6.4.0 and below), TIBCO JasperReports Library for ActiveMatrix BPM (versions 6.2.0 and below), TIBCO JasperReports Professional (versions 6.2.1 and below, and 6.3.0), TIBCO JasperReports Server (versions 6.1.1 and below, 6.2.0, 6.2.1, 6.3.0), TIBCO JasperReports Server Community Edition (versions 6.3.0 and below), TIBCO JasperReports Server for ActiveMatrix BPM (versions 6.2.0 and below), TIBCO Jaspersoft for AWS with Multi-Tenancy (versions 6.3.0 and below), TIBCO Jaspersoft Reporting and Analytics for AWS (versions 6.3.0 and below), and TIBCO Jaspersoft Studio for ActiveMatrix BPM (versions 6.2.0 and below).    Medium  2017-07-18  2017-07-05  View
88258  CVE-2017-9896  XnView Classic for Windows Version 2.40 allows remote attackers to execute code via a crafted .fpx file, related to a Read Access Violation on Control Flow starting at Xfpx!gffGetFormatInfo+0x0000000000013e8a.    6.8  Medium  2017-07-18  2017-07-10  View
28098  CVE-2015-7555  Heap-based buffer overflow in giffix.c in giffix in giflib 5.1.1 allows attackers to cause a denial of service (program crash) via crafted image and logical screen width fields in a GIF file.    4.3  Medium  2017-05-27  2017-05-26  View
66243  CVE-2005-0486  Tarantella Secure Global Desktop Enterprise Edition 4.00 and 3.42, and Tarantella Enterprise 3 3.40 and 3.30, when using RSA SecurID and multiple users have the same username, reveals sensitive information during authentication, which allows remote attackers to identify valid usernames and the authentication scheme.    Medium  2017-07-18  2017-07-10  View

Page 1730 of 17672, showing 5 records out of 88360 total, starting on record 8646, ending on 8650

Actions