NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
84271  CVE-2017-2393  An issue was discovered in certain Apple products. iOS before 10.3 is affected. The issue involves the Safari Reader component. It allows remote attackers to conduct Universal XSS (UXSS) attacks via a crafted web site.    4.3  Medium  2017-07-18  2017-07-11  View
84527  CVE-2017-3515  Vulnerability in the Oracle User Management component of Oracle E-Business Suite (subcomponent: User Name/Password Management). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5 and 12.2.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle User Management. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle User Management, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle User Management accessible data. CVSS 3.0 Base Score 4.7 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N).    5.8  Medium  2017-07-18  2017-07-17  View
86063  CVE-2017-8313  Heap out-of-bound read in ParseJSS in VideoLAN VLC before 2.2.5 due to missing check of string termination allows attackers to read data beyond allocated memory and potentially crash the process via a crafted subtitles file.    4.3  Medium  2017-07-18  2017-07-10  View
87599  CVE-2017-1000062  kittoframework kitto 0.5.1 is vulnerable to directory traversal in the router resulting in remote code execution          2017-07-18  2017-07-17  View
87855  CVE-2017-11403  The ReadMNGImage function in coders/png.c in GraphicsMagick 1.3.26 has an out-of-order CloseBlob call, resulting in a use-after-free via a crafted file.          2017-07-18  2017-07-17  View

Page 277 of 17672, showing 5 records out of 88360 total, starting on record 1381, ending on 1385

Actions