NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
84652  CVE-2017-5029  The xsltAddTextString function in transform.c in libxslt 1.1.29, as used in Blink in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android, lacked a check for integer overflow during a size calculation, which allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page.    6.8  Medium  2017-07-18  2017-07-11  View
88236  CVE-2017-9874  IrfanView version 4.44 (32bit) with FPX Plugin 4.46 allows attackers to execute arbitrary code or cause a denial of service via a crafted .fpx file, related to a User Mode Write AV starting at FPX!FPX_GetScanDevicePropertyGroup+0x0000000000007822.    6.8  Medium  2017-07-18  2017-07-11  View
59820  CVE-2006-1098  ** DISPUTED ** Multiple SQL injection vulnerabilities in NZ Ecommerce allow remote attackers to execute arbitrary SQL commands via the (1) informationID or (2) ParentCategory parameter to index.php. NOTE: the vendor has disputed this issue in a comment on the researcher's blog, but research by CVE suggests that this might be a legitimate problem.    7.5  High  2017-07-18  2017-07-11  View
88237  CVE-2017-9875  IrfanView version 4.44 (32bit) with FPX Plugin 4.46 allows attackers to execute arbitrary code or cause a denial of service via a crafted .fpx file, related to a User Mode Write AV starting at FPX!DE_Decode+0x0000000000000cdb.    6.8  Medium  2017-07-18  2017-07-11  View
88238  CVE-2017-9876  IrfanView version 4.44 (32bit) with FPX Plugin 4.46 allows attackers to execute arbitrary code or cause a denial of service via a crafted .fpx file, related to Data from Faulting Address controls Code Flow starting at FPX!FPX_GetScanDevicePropertyGroup+0x000000000000c995.    6.8  Medium  2017-07-18  2017-07-11  View

Page 17481 of 17672, showing 5 records out of 88360 total, starting on record 87401, ending on 87405

Actions