NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83244  CVE-2017-5833  Cross-site scripting (XSS) vulnerability in the invocation code generation for interstitial zones in Revive Adserver before 4.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.    4.3  Medium  2017-03-18  2017-03-06  View
17964  CVE-2016-1614  The UnacceleratedImageBufferSurface class in WebKit/Source/platform/graphics/UnacceleratedImageBufferSurface.cpp in Blink, as used in Google Chrome before 48.0.2564.82, mishandles the initialization mode, which allows remote attackers to obtain sensitive information from process memory via a crafted web site.    4.3  Medium  2017-01-19  2016-12-07  View
83500  CVE-2017-6955  An issue was discovered in by-email/by-email.php in the Invite Anyone plugin before 1.3.15 for WordPress. A user is able to change the subject and the body of the invitation mail that should be immutable, which facilitates a social engineering attack.    Medium  2017-03-29  2017-03-21  View
18220  CVE-2016-1896  Race condition in the initialization process on Lexmark printers with firmware ATL before ATL.02.049, CB before CB.02.049, PP before PP.02.049, and YK before YK.02.049 allows remote attackers to bypass authentication by leveraging incorrect detection of the security-jumper status.    10  High  2017-01-19  2016-01-31  View
83756  CVE-2017-6003  dotCMS 3.7.0 has XSS reachable from ext/languages_manager/edit_language in portal/layout via the bottom two form fields.    4.3  Medium  2017-03-29  2017-03-28  View

Page 3014 of 17672, showing 5 records out of 88360 total, starting on record 15066, ending on 15070

Actions