NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83504 | CVE-2017-6962 | An issue was discovered in apng2gif 1.7. There is an integer overflow resulting in a heap-based buffer overflow. This is related to the read_chunk function making an unchecked addition of 12. | 2 | 5 | Medium | 2017-03-29 | 2017-03-20 | View | |
18224 | CVE-2016-1900 | CRLF injection vulnerability in the cgit_print_http_headers function in ui-shared.c in CGit before 0.12 allows remote attackers with permission to write to a repository to inject arbitrary HTTP headers and conduct HTTP response splitting attacks or cross-site scripting (XSS) attacks via newline characters in a filename. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-07 | View | |
83760 | CVE-2017-6066 | Subrion CMS 4.0.5 has CSRF in admin/languages/edit/1/. The attacker can perform any Edit Language action, and can optionally insert XSS via the title parameter. | 2 | 6.8 | Medium | 2017-03-29 | 2017-03-28 | View | |
84016 | CVE-2016-9395 | The jas_seq2d_create function in jas_seq.c in JasPer before 1.900.25 allows remote attackers to cause a denial of service (assertion failure) via a crafted file. | 2 | 4.3 | Medium | 2017-03-29 | 2017-03-27 | View | |
18736 | CVE-2016-2529 | The iseries_check_file_type function in wiretap/iseries.c in the iSeries file parser in Wireshark 2.0.x before 2.0.2 does not consider that a line may lack the "OBJECT PROTOCOL" substring, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted file. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-02 | View |
Page 1743 of 17672, showing 5 records out of 88360 total, starting on record 8711, ending on 8715