NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
20340  CVE-2016-4784  The integrated web server in the EN100 Ethernet module before 4.27 on Siemens SIPROTEC 4 and SIPROTEC Compact devices, and the Ethernet Service Interface on SIPROTEC Compact devices, allows remote attackers to obtain sensitive information via an HTTP request.    Medium  2017-07-18  2017-07-12  View
20341  CVE-2016-4785  The integrated web server in the EN100 Ethernet module before 4.27 on Siemens SIPROTEC 4 and SIPROTEC Compact devices allows remote attackers to obtain sensitive information from device memory via an HTTP request.    Medium  2017-07-18  2017-07-12  View
88191  CVE-2017-8766  IrfanView version 4.44 (32bit) allows remote attackers to execute code via a crafted .mov file, because of a User Mode Write AV near NULL issue.    6.8  Medium  2017-07-18  2017-07-12  View
87708  CVE-2017-10788  The DBD::mysql module through 4.043 for Perl allows remote attackers to cause a denial of service (use-after-free and application crash) or possibly have unspecified other impact by triggering (1) certain error responses from a MySQL server or (2) a loss of a network connection to a MySQL server. The use-after-free defect was introduced by relying on incorrect Oracle mysql_stmt_close documentation and code examples.    7.5  High  2017-07-18  2017-07-12  View
87709  CVE-2017-10789  The DBD::mysql module through 4.043 for Perl uses the mysql_ssl=1 setting to mean that SSL is optional (even though this setting's documentation has a your communication with the server will be encrypted statement), which allows man-in-the-middle attackers to spoof servers via a cleartext-downgrade attack, a related issue to CVE-2015-3152.    4.3  Medium  2017-07-18  2017-07-12  View

Page 17514 of 17672, showing 5 records out of 88360 total, starting on record 87566, ending on 87570

Actions