NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 87074 | CVE-2017-8545 | A spoofing vulnerability exists in when Microsoft Outlook for Mac does not sanitize html properly, aka Microsoft Outlook for Mac Spoofing Vulnerability. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-07 | View | |
| 21794 | CVE-2016-7280 | Cross-site scripting (XSS) vulnerability in Microsoft Edge allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka "Microsoft Edge Information Disclosure Vulnerability," a different vulnerability than CVE-2016-7206. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-27 | View | |
| 87330 | CVE-2017-9763 | The grub_ext2_read_block function in fs/ext2.c in GNU GRUB before 2013-11-12, as used in shlr/grub/fs/ext2.c in radare2 1.5.0, allows remote attackers to cause a denial of service (excessive stack use and application crash) via a crafted binary file, related to use of a variable-size stack array. | 2 | 5 | Medium | 2017-07-18 | 2017-07-05 | View | |
| 22050 | CVE-2016-8398 | Unauthenticated messages processed by the UE. Certain NAS messages are processed when no EPS security context exists in the UE. Product: Android. Versions: Kernel 3.18. Android ID: A-31548486. References: QC-CR#877705. | 2 | 10 | High | 2017-01-19 | 2017-01-17 | View | |
| 22306 | CVE-2016-9183 | In /framework/modules/ecommerce/controllers/orderController.php of Exponent CMS 2.4.0, untrusted input is passed into selectObjectsBySql. The method selectObjectsBySql of class mysqli_database uses the injectProof method to prevent SQL injection, but this filter can be bypassed easily: it only sanitizes user input if there are odd numbers of " or " characters. Impact is Information Disclosure. | 2 | 5 | Medium | 2017-01-19 | 2016-11-29 | View |
Page 2691 of 17672, showing 5 records out of 88360 total, starting on record 13451, ending on 13455