NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
86285  CVE-2017-9196  libautotrace.a in AutoTrace 0.31.1 has a negative-size-param issue in the ReadImage function in input-tga.c:528:7.    7.5  High  2017-06-03  2017-05-28  View
87309  CVE-2017-9730  SQL injection vulnerability in rdr.php in nuevoMailer version 6.0 and earlier allows remote attackers to execute arbitrary SQL commands via the r parameter.    7.5  High  2017-06-28  2017-06-23  View
22285  CVE-2016-9137  Use-after-free vulnerability in the CURLFile implementation in ext/curl/curl_file.c in PHP before 5.6.27 and 7.x before 7.0.12 allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted serialized data that is mishandled during __wakeup processing.    7.5  High  2017-01-19  2017-01-10  View
88077  CVE-2017-7405  On the D-Link DIR-615 before v20.12PTb04, once authenticated, this device identifies the user based on the IP address of his machine. By spoofing the IP address belonging to the victim's host, an attacker might be able to take over the administrative session without being prompted for authentication credentials. An attacker can get the victim's and router's IP addresses by simply sniffing the network traffic. Moreover, if the victim has web access enabled on his router and is accessing the web interface from a different network that is behind the NAT/Proxy, an attacker can sniff the network traffic to know the public IP address of the victim's router and take over his session as he won't be prompted for credentials.    7.5  High  2017-07-18  2017-07-14  View
25101  CVE-2015-3203  Unrestricted file upload vulnerability in h5ai before 0.25.0 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in the directory specified by the href parameter.    7.5  High  2017-01-19  2015-09-29  View

Page 2090 of 17672, showing 5 records out of 88360 total, starting on record 10446, ending on 10450

Actions