NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
19486  CVE-2016-3718  The (1) HTTP and (2) FTP coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted image.    4.3  Medium  2017-01-19  2016-11-30  View
85022  CVE-2017-8057  In Joomla! 3.4.0 through 3.6.5 (fixed in 3.7.0), multiple files caused full path disclosures on systems with enabled error reporting.    Medium  2017-05-07  2017-05-03  View
19742  CVE-2016-4020  The patch_instruction function in hw/i386/kvmvapic.c in QEMU does not initialize the imm32 variable, which allows local guest OS administrators to obtain sensitive information from host stack memory by accessing the Task Priority Register (TPR).    2.1  Low  2017-01-19  2016-11-28  View
85278  CVE-2016-10345  In Phusion Passenger before 5.1.0, a known /tmp filename was used during passenger-install-nginx-module execution, which could allow local attackers to gain the privileges of the passenger user.    4.6  Medium  2017-04-27  2017-04-24  View
19998  CVE-2016-4300  Integer overflow in the read_SubStreamsInfo function in archive_read_support_format_7zip.c in libarchive before 3.2.1 allows remote attackers to execute arbitrary code via a 7zip file with a large number of substreams, which triggers a heap-based buffer overflow.    6.8  Medium  2017-01-19  2016-12-21  View

Page 2417 of 17672, showing 5 records out of 88360 total, starting on record 12081, ending on 12085

Actions