NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
27134  CVE-2015-6123  Cross-site scripting (XSS) vulnerability in Microsoft Excel for Mac 2011 and Excel 2016 for Mac allows remote attackers to inject arbitrary web script or HTML via a crafted e-mail message that is mishandled by Outlook for Mac, aka "Microsoft Outlook for Mac Spoofing Vulnerability."    4.3  Medium  2017-03-29  2017-03-23  View
31743  CVE-2014-3566  The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, aka the "POODLE" issue.    4.3  Medium  2017-03-29  2017-03-23  View
83489  CVE-2017-6908  An issue was discovered in concrete5 <= 5.6.3.4. The vulnerability exists due to insufficient filtration of user-supplied data (fID) passed to the concrete5-legacy-master/web/concrete/tools/files/selector_data.php URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.    4.3  Medium  2017-03-29  2017-03-22  View
83791  CVE-2017-6830  Heap-based buffer overflow in the alaw2linear_buf function in G711.cpp in Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause a denial of service (crash) via a crafted file.    4.3  Medium  2017-03-29  2017-03-22  View
83794  CVE-2017-6833  The runPull function in libaudiofile/modules/BlockCodec.cpp in Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause a denial of service (divide-by-zero error and crash) via a crafted file.    4.3  Medium  2017-03-29  2017-03-22  View

Page 1945 of 17672, showing 5 records out of 88360 total, starting on record 9721, ending on 9725

Actions