NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 18574 | CVE-2016-2337 | Type confusion exists in _cancel_eval Ruby"s TclTkIp class method. Attacker passing different type of object than String as "retval" argument can cause arbitrary code execution. | 2 | 7.5 | High | 2017-01-19 | 2017-01-10 | View | |
| 18573 | CVE-2016-2336 | Type confusion exists in two methods of Ruby"s WIN32OLE class, ole_invoke and ole_query_interface. Attacker passing different type of object than this assumed by developers can cause arbitrary code execution. | 2 | 7.5 | High | 2017-01-19 | 2017-01-10 | View | |
| 18572 | CVE-2016-2335 | The CInArchive::ReadFileItem method in Archive/Udf/UdfIn.cpp in 7zip 9.20 and 15.05 beta and p7zip allows remote attackers to cause a denial of service (out-of-bounds read) or execute arbitrary code via the PartitionRef field in the Long Allocation Descriptor in a UDF file. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-14 | View | |
| 18571 | CVE-2016-2334 | Heap-based buffer overflow in the NArchive::NHfs::CHandler::ExtractZlibFile method in 7zip before 16.00 and p7zip allows remote attackers to execute arbitrary code via a crafted HFS+ image. | 2 | 9.3 | High | 2017-01-19 | 2016-12-16 | View | |
| 18570 | CVE-2016-2333 | SysLINK SL-1000 Machine-to-Machine (M2M) Modular Gateway devices with firmware before 01A.8 use the same hardcoded encryption key across different customers" installations, which allows attackers to defeat cryptographic protection mechanisms by leveraging knowledge of this key from another installation. | 2 | 5 | Medium | 2017-01-19 | 2016-05-04 | View |
Page 2050 of 17672, showing 5 records out of 88360 total, starting on record 10246, ending on 10250