NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
18574  CVE-2016-2337  Type confusion exists in _cancel_eval Ruby"s TclTkIp class method. Attacker passing different type of object than String as "retval" argument can cause arbitrary code execution.    7.5  High  2017-01-19  2017-01-10  View
18573  CVE-2016-2336  Type confusion exists in two methods of Ruby"s WIN32OLE class, ole_invoke and ole_query_interface. Attacker passing different type of object than this assumed by developers can cause arbitrary code execution.    7.5  High  2017-01-19  2017-01-10  View
18572  CVE-2016-2335  The CInArchive::ReadFileItem method in Archive/Udf/UdfIn.cpp in 7zip 9.20 and 15.05 beta and p7zip allows remote attackers to cause a denial of service (out-of-bounds read) or execute arbitrary code via the PartitionRef field in the Long Allocation Descriptor in a UDF file.    6.8  Medium  2017-01-19  2016-12-14  View
18571  CVE-2016-2334  Heap-based buffer overflow in the NArchive::NHfs::CHandler::ExtractZlibFile method in 7zip before 16.00 and p7zip allows remote attackers to execute arbitrary code via a crafted HFS+ image.    9.3  High  2017-01-19  2016-12-16  View
18570  CVE-2016-2333  SysLINK SL-1000 Machine-to-Machine (M2M) Modular Gateway devices with firmware before 01A.8 use the same hardcoded encryption key across different customers" installations, which allows attackers to defeat cryptographic protection mechanisms by leveraging knowledge of this key from another installation.    Medium  2017-01-19  2016-05-04  View

Page 2050 of 17672, showing 5 records out of 88360 total, starting on record 10246, ending on 10250

Actions