NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
84294 | CVE-2017-2417 | An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS before 10.2 is affected. watchOS before 3.2 is affected. The issue involves the CoreGraphics component. It allows remote attackers to cause a denial of service (infinite recursion) via a crafted image. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-11 | View | |
84295 | CVE-2017-2418 | An issue was discovered in certain Apple products. macOS before 10.12.4 is affected. The issue involves the Hypervisor component. It allows guest OS users to obtain sensitive information from the CR8 control register via unspecified vectors. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-11 | View | |
83016 | CVE-2017-0110 | Cross-site scripting (XSS) vulnerability in Microsoft Exchange Outlook Web Access (OWA) allows remote attackers to inject arbitrary web script or HTML via a crafted email or chat client, aka Microsoft Exchange Server Elevation of Privilege Vulnerability. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-11 | View | |
84296 | CVE-2017-2419 | An issue was discovered in certain Apple products. iOS before 10.3 is affected. Safari before 10.1 is affected. The issue involves the WebKit component. It allows remote attackers to bypass a Content Security Policy protection mechanism via unspecified vectors. | 2 | 5 | Medium | 2017-07-18 | 2017-07-11 | View | |
33608 | CVE-2014-5983 | The Threadflip : Buy, Sell Fashion (aka com.threadflip.android) application 1.1.11 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 2 | 5.4 | Medium | 2017-07-18 | 2017-07-11 | View |
Page 194 of 17672, showing 5 records out of 88360 total, starting on record 966, ending on 970