NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83756 | CVE-2017-6003 | dotCMS 3.7.0 has XSS reachable from ext/languages_manager/edit_language in portal/layout via the bottom two form fields. | 2 | 4.3 | Medium | 2017-03-29 | 2017-03-28 | View | |
84012 | CVE-2016-9391 | The jpc_bitstream_getbits function in jpc_bs.c in JasPer before 2.0.10 allows remote attackers to cause a denial of service (assertion failure) via a very large integer. | 2 | 5 | Medium | 2017-03-29 | 2017-03-27 | View | |
83501 | CVE-2017-6958 | An XSS vulnerability in the MantisBT Source Integration Plugin (before 2.0.2) search result page allows an attacker to inject arbitrary HTML or JavaScript (if MantisBT's CSP settings permit it) by crafting any valid parameter. | 2 | 4.3 | Medium | 2017-03-29 | 2017-03-20 | View | |
84013 | CVE-2016-9392 | The calcstepsizes function in jpc_dec.c in JasPer before 1.900.17 allows remote attackers to cause a denial of service (assertion failure) via a crafted file. | 2 | 4.3 | Medium | 2017-03-29 | 2017-03-27 | View | |
83502 | CVE-2017-6960 | An issue was discovered in apng2gif 1.7. There is an integer overflow resulting in a heap-based buffer over-read, related to the load_apng function and the imagesize variable. | 2 | 5 | Medium | 2017-03-29 | 2017-03-20 | View |
Page 1892 of 17672, showing 5 records out of 88360 total, starting on record 9456, ending on 9460