NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83505  CVE-2017-6965  readelf in GNU Binutils 2.28 writes to illegal addresses while processing corrupt input files containing symbol-difference relocations, leading to a heap-based buffer overflow.    4.3  Medium  2017-03-29  2017-03-20  View
83761  CVE-2017-6067  Symphony 2.6.9 has XSS in publish/notes/edit/##/saved/ via the bottom form field.    4.3  Medium  2017-03-29  2017-03-28  View
18481  CVE-2016-2212  The getOrderByStatusUrlKey function in the Mage_Rss_Helper_Order class in app/code/core/Mage/Rss/Helper/Order.php in Magento Enterprise Edition before 1.14.2.3 and Magento Community Edition before 1.9.2.3 allows remote attackers to obtain sensitive order information via the order_id in a JSON object in the data parameter in an RSS feed request to index.php/rss/order/status.    Medium  2017-01-19  2016-04-22  View
84017  CVE-2016-9396  The JPC_NOMINALGAIN function in jpc_t1cod.c in JasPer before 1.900.12 allows remote attackers to cause a denial of service (assertion failure) via unspecified vectors.    Medium  2017-03-29  2017-03-27  View
18737  CVE-2016-2530  The dissct_rsl_ipaccess_msg function in epan/dissectors/packet-rsl.c in the RSL dissector in Wireshark 1.12.x before 1.12.10 and 2.0.x before 2.0.2 mishandles the case of an unrecognized TLV type, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted packet, a different vulnerability than CVE-2016-2531.    4.3  Medium  2017-01-19  2016-12-02  View

Page 1777 of 17672, showing 5 records out of 88360 total, starting on record 8881, ending on 8885

Actions