NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
12105  CVE-2010-0555  Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, 7, and 8 does not prevent rendering of non-HTML local files as HTML documents, which allows remote attackers to bypass intended access restrictions and read arbitrary files via vectors involving the product"s use of text/html as the default content type for files that are encountered after a redirection, aka the URLMON sniffing vulnerability, a variant of CVE-2009-1140 and related to CVE-2008-1448.    9.3  High  2017-01-18  2010-03-26  View
15433  CVE-2010-4148  Directory traversal vulnerability in AnyConnect 1.2.3.0, and possibly earlier, allows remote FTP servers to write arbitrary files via a ".." (dot dot backslash) in a filename.    9.3  High  2017-01-18  2010-11-04  View
17993  CVE-2016-1643  The ImageInputType::ensurePrimaryContent function in WebKit/Source/core/html/forms/ImageInputType.cpp in Blink, as used in Google Chrome before 49.0.2623.87, does not properly maintain the user agent shadow DOM, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that leverage "type confusion."    9.3  High  2017-01-19  2016-12-02  View
84297  CVE-2017-2420  An issue was discovered in certain Apple products. macOS before 10.12.4 is affected. The issue involves the Bluetooth component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.    9.3  High  2017-07-18  2017-07-11  View
19529  CVE-2016-3770  The MediaTek drivers in Android before 2016-07-05 on Android One devices allow attackers to gain privileges via a crafted application, aka Android internal bug 28346752 and MediaTek internal bug ALPS02703102.    9.3  High  2017-01-19  2016-07-12  View

Page 311 of 17672, showing 5 records out of 88360 total, starting on record 1551, ending on 1555

Actions