NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83505 | CVE-2017-6965 | readelf in GNU Binutils 2.28 writes to illegal addresses while processing corrupt input files containing symbol-difference relocations, leading to a heap-based buffer overflow. | 2 | 4.3 | Medium | 2017-03-29 | 2017-03-20 | View | |
83761 | CVE-2017-6067 | Symphony 2.6.9 has XSS in publish/notes/edit/##/saved/ via the bottom form field. | 2 | 4.3 | Medium | 2017-03-29 | 2017-03-28 | View | |
18481 | CVE-2016-2212 | The getOrderByStatusUrlKey function in the Mage_Rss_Helper_Order class in app/code/core/Mage/Rss/Helper/Order.php in Magento Enterprise Edition before 1.14.2.3 and Magento Community Edition before 1.9.2.3 allows remote attackers to obtain sensitive order information via the order_id in a JSON object in the data parameter in an RSS feed request to index.php/rss/order/status. | 2 | 5 | Medium | 2017-01-19 | 2016-04-22 | View | |
84017 | CVE-2016-9396 | The JPC_NOMINALGAIN function in jpc_t1cod.c in JasPer before 1.900.12 allows remote attackers to cause a denial of service (assertion failure) via unspecified vectors. | 2 | 5 | Medium | 2017-03-29 | 2017-03-27 | View | |
18737 | CVE-2016-2530 | The dissct_rsl_ipaccess_msg function in epan/dissectors/packet-rsl.c in the RSL dissector in Wireshark 1.12.x before 1.12.10 and 2.0.x before 2.0.2 mishandles the case of an unrecognized TLV type, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted packet, a different vulnerability than CVE-2016-2531. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-02 | View |
Page 1777 of 17672, showing 5 records out of 88360 total, starting on record 8881, ending on 8885