NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
85280  CVE-2016-1155  HTTP header injection vulnerability in the URLConnection class in Android OS 2.2 through 6.0 allows remote attackers to execute arbitrary scripts or set arbitrary values in cookies.    7.5  High  2017-04-27  2017-04-24  View
20000  CVE-2016-4302  Heap-based buffer overflow in the parse_codes function in archive_read_support_format_rar.c in libarchive before 3.2.1 allows remote attackers to execute arbitrary code via a RAR file with a zero-sized dictionary.    6.8  Medium  2017-01-19  2016-10-06  View
85536  CVE-2017-8353  In ImageMagick 7.0.5-5, the ReadPICTImage function in pict.c allows attackers to cause a denial of service (memory leak) via a crafted file.    4.3  Medium  2017-05-27  2017-05-11  View
20256  CVE-2016-4651  Cross-site scripting (XSS) vulnerability in the WebKit JavaScript bindings in Apple iOS before 9.3.3 and Safari before 9.1.2 allows remote attackers to inject arbitrary web script or HTML via a crafted HTTP/0.9 response, related to a "cross-protocol cross-site scripting (XPXSS)" vulnerability.    4.3  Medium  2017-01-19  2016-11-28  View
85792  CVE-2017-0632  An information disclosure vulnerability in the Qualcomm sound codec driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10. Android ID: A-35392586. References: QC-CR#832915.    2.6  Low  2017-05-27  2017-05-19  View

Page 2202 of 17672, showing 5 records out of 88360 total, starting on record 11006, ending on 11010

Actions