NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
82971  CVE-2017-0061  The Color Management Module (ICM32.dll) memory handling functionality in Windows Vista SP2, Windows Server 2008 SP2 and R2, and Windows 7 SP1 allows remote attackers to bypass ASLR and execute code in combination with another vulnerability through a crafted website, aka Microsoft Color Management Information Disclosure Vulnerability. This vulnerability is different from that described in CVE-2017-0063.    2.6  Low  2017-07-18  2017-07-11  View
82972  CVE-2017-0062  The Graphics Device Interface (GDI) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607 allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka GDI+ Information Disclosure Vulnerability. This vulnerability is different from those described in CVE-2017-0060 and CVE-2017-0073.    1.9  Low  2017-07-18  2017-07-11  View
82973  CVE-2017-0063  The Color Management Module (ICM32.dll) memory handling functionality in Windows Vista SP2; Windows Server 2008 SP2 and R2; and Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allows remote attackers to bypass ASLR and execute code in combination with another vulnerability through a crafted website, aka Microsoft Color Management Information Disclosure Vulnerability. This vulnerability is different from that described in CVE-2017-0061.    4.3  Medium  2017-07-18  2017-07-11  View
84253  CVE-2017-2367  An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. tvOS before 10.2 is affected. The issue involves the WebKit component. It allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted web site.    4.3  Medium  2017-07-18  2017-07-11  View
84765  CVE-2017-6973  A cross-site scripting (XSS) vulnerability in the MantisBT Configuration Report page (adm_config_report.php) allows remote attackers to inject arbitrary code through a crafted 'action' parameter. This is fixed in 1.3.8, 2.1.2, and 2.2.2.    3.5  Low  2017-07-18  2017-07-11  View

Page 176 of 17672, showing 5 records out of 88360 total, starting on record 876, ending on 880

Actions