NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
85514  CVE-2017-8301  LibreSSL 2.5.1 to 2.5.3 lacks TLS certificate verification if SSL_get_verify_result is relied upon for a later check of a verification result, in a use case where a user-provided verification callback returns 1, as demonstrated by acceptance of invalid certificates by nginx.    2.6  Low  2017-05-27  2017-05-10  View
60426  CVE-2006-1721  digestmd5.c in the CMU Cyrus Simple Authentication and Security Layer (SASL) library 2.1.18, and possibly other versions before 2.1.21, allows remote unauthenticated attackers to cause a denial of service (segmentation fault) via malformed inputs in DIGEST-MD5 negotiation.    2.6  Low  2016-12-20  2011-03-07  View
61450  CVE-2006-2765  Cross-site scripting (XSS) vulnerability in news_information.php in Interlink Advantage allows remote attackers to inject arbitrary web script or HTML via the flag parameter.    2.6  Low  2016-12-20  2008-09-05  View
2827  CVE-2008-2933  Mozilla Firefox before 2.0.0.16, and 3.x before 3.0.1, interprets "|" (pipe) characters in a command-line URI as requests to open multiple tabs, which allows remote attackers to access chrome:i URIs, or read arbitrary local files via manipulations involving a series of URIs that is not entirely handled by a vector application, as exploited in conjunction with CVE-2008-2540. NOTE: this issue exists because of an insufficient fix for CVE-2005-2267.    2.6  Low  2017-01-03  2013-08-02  View
9995  CVE-2011-3328  The png_handle_cHRM function in pngrutil.c in libpng 1.5.4, when color-correction support is enabled, allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a malformed PNG image containing a cHRM chunk associated with a certain zero value.    2.6  Low  2017-01-07  2012-09-21  View

Page 2264 of 17672, showing 5 records out of 88360 total, starting on record 11316, ending on 11320

Actions