NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83461 | CVE-2017-6819 | In WordPress before 4.7.3, there is cross-site request forgery (CSRF) in Press This (wp-admin/includes/class-wp-press-this.php), leading to excessive use of server resources. The CSRF can trigger an outbound HTTP request for a large file that is then parsed by Press This. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-17 | View | |
18181 | CVE-2016-1833 | The htmlCurrentChar function in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted XML document. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-27 | View | |
83717 | CVE-2017-5206 | Firejail before 0.9.44.4, when running on a Linux kernel before 4.8, allows context-dependent attackers to bypass a seccomp-based sandbox protection mechanism via the --allow-debuggers argument. | 2 | 6.8 | Medium | 2017-03-29 | 2017-03-28 | View | |
18437 | CVE-2016-2163 | Cross-site scripting (XSS) vulnerability in Apache OpenMeetings before 3.1.1 allows remote attackers to inject arbitrary web script or HTML via the event description when creating an event. | 2 | 4.3 | Medium | 2017-01-19 | 2016-04-14 | View | |
84229 | CVE-2017-1274 | IBM Domino 8.5.3, and 9.0 is vulnerable to a stack based overflow in the IMAP service that could allow an authenticated attacker to execute arbitrary code by specifying a large mailbox name. IBM X-Force ID: 124749. | 2 | 6.5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 201 of 17672, showing 5 records out of 88360 total, starting on record 1001, ending on 1005