NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
85076  CVE-2013-7463  The aescrypt gem 1.0.0 for Ruby does not randomize the CBC IV for use with the AESCrypt.encrypt and AESCrypt.decrypt functions, which allows attackers to defeat cryptographic protection mechanisms via a chosen plaintext attack.          2017-04-27  2017-04-19  View
85332  CVE-2016-5312  Directory traversal vulnerability in the charting component in Symantec Messaging Gateway before 10.6.2 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the sn parameter to brightmail/servlet/com.ve.kavachart.servlet.ChartStream.    Medium  2017-04-27  2017-04-22  View
84053  CVE-2017-7285  A vulnerability in the network stack of MikroTik Version 6.38.5 released 2017-03-09 could allow an unauthenticated remote attacker to exhaust all available CPU via a flood of TCP RST packets, preventing the affected router from accepting new TCP connections.    7.8  High  2017-04-27  2017-04-10  View
84821  CVE-2017-7387  TheFirstQuestion/HelpMeWatchWho before 2017-03-28 is vulnerable to a reflected XSS in HelpMeWatchWho-master/unaired.php (episodeID parameter).    4.3  Medium  2017-04-27  2017-04-05  View
85333  CVE-2016-5313  Symantec Web Gateway (SWG) before 5.2.5 allows remote authenticated users to execute arbitrary OS commands.    High  2017-04-27  2017-04-20  View

Page 1783 of 17672, showing 5 records out of 88360 total, starting on record 8911, ending on 8915

Actions