NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83045  CVE-2017-0140  Microsoft Edge allows remote attackers to bypass the Same Origin Policy for HTML elements in other browser windows, aka Microsoft Edge Security Feature Bypass Vulnerability. This vulnerability is different from those described in CVE-2017-0066 and CVE-2017-0135.    Medium  2017-07-18  2017-07-11  View
84325  CVE-2017-2448  An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS before 10.2 is affected. The issue involves the Keychain component. It allows man-in-the-middle attackers to bypass an iCloud Keychain secret protection mechanism by leveraging lack of authentication for OTR packets.    4.3  Medium  2017-07-18  2017-07-11  View
87653  CVE-2017-10729  IrfanView version 4.44 (32bit) allows attackers to execute arbitrary code or cause a denial of service via a crafted .rle file, related to a User Mode Write AV starting at ntdll_77df0000!RtlpWaitOnCriticalSection+0x0000000000000121.    6.8  Medium  2017-07-18  2017-07-11  View
83046  CVE-2017-0141  A remote code execution vulnerability exists in the way affected Microsoft scripting engines render when handling objects in memory in Microsoft browsers. These vulnerabilities could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successfully exploited the vulnerability could gain the same user rights as the current user. If the current user is logged on with administrative user rights, an attacker who successfully exploited the vulnerability could take control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. This vulnerability is different from those described in CVE-2017-0010, CVE-2017-0015, CVE-2017-0032, CVE-2017-0035, CVE-2017-0067, CVE-2017-0070, CVE-2017-0071, CVE-2017-0094, CVE-2017-0131, CVE-2017-0132, CVE-2017-0133, CVE-2017-0134, CVE-2017-0136, CVE-2017-0137, CVE-2017-0138, CVE-2017-0150, and CVE-2017-0151.    7.6  High  2017-07-18  2017-07-11  View
83814  CVE-2017-7187  The sg_ioctl function in drivers/scsi/sg.c in the Linux kernel through 4.10.4 allows local users to cause a denial of service (stack-based buffer overflow) or possibly have unspecified other impact via a large command size in an SG_NEXT_CMD_LEN ioctl call, leading to out-of-bounds write access in the sg_write function.    7.2  High  2017-07-18  2017-07-11  View

Page 17463 of 17672, showing 5 records out of 88360 total, starting on record 87311, ending on 87315

Actions