NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85218 | CVE-2016-8923 | IBM Curam Social Program Management 5.2, 6.0, and 7.0 contains a vulnerability that would allow an authorized user to obtain sensitive information from the profile of a higher privileged user that they should not have access to. IBM X-Force ID: 118536. | 2 | 4 | Medium | 2017-04-27 | 2017-04-26 | View | |
84707 | CVE-2017-5873 | Unquoted Windows search path vulnerability in the guest service in Unisys s-Par before 4.4.20 allows local users to gain privileges via a Trojan horse executable file in the %SYSTEMDRIVE% directory, as demonstrated by program.exe. | 2 | 4.6 | Medium | 2017-04-27 | 2017-04-17 | View | |
83684 | CVE-2017-0881 | An error in the implementation of an autosubscribe feature in the check_stream_exists route of the Zulip group chat application server before 1.4.3 allowed an authenticated user to subscribe to a private stream that should have required an invitation from an existing member to join. The issue affects all previously released versions of the Zulip server. | 2 | 4 | Medium | 2017-04-27 | 2017-04-03 | View | |
84708 | CVE-2017-5887 | WebSocket.swift in Starscream before 2.0.4 allows an SSL Pinning bypass because pinning occurs in the stream function (this is too late; pinning should occur in the initStreamsWithData function). | 2 | 5 | Medium | 2017-04-27 | 2017-04-25 | View | |
84964 | CVE-2017-7865 | FFmpeg before 2017-01-24 has an out-of-bounds write caused by a heap-based buffer overflow related to the ipvideo_decode_block_opcode_0xA function in libavcodec/interplayvideo.c and the avcodec_align_dimensions2 function in libavcodec/utils.c. | 2 | 7.5 | High | 2017-04-27 | 2017-04-20 | View |
Page 1860 of 17672, showing 5 records out of 88360 total, starting on record 9296, ending on 9300