NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85770 | CVE-2017-0610 | An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-35399404. References: QC-CR#1094852. | 2 | 7.6 | High | 2017-05-27 | 2017-05-19 | View | |
86026 | CVE-2017-7485 | In PostgreSQL 9.3.x before 9.3.17, 9.4.x before 9.4.12, 9.5.x before 9.5.7, and 9.6.x before 9.6.3, it was found that the PGREQUIRESSL environment variable was no longer enforcing a SSL/TLS connection to a PostgreSQL server. An active Man-in-the-Middle attacker could use this flaw to strip the SSL/TLS protection from a connection between a client and a server. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-07 | View | |
86282 | CVE-2017-9193 | libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer over-read in the ReadImage function in input-tga.c:538:33. | 2 | 7.5 | High | 2017-06-03 | 2017-05-28 | View | |
86538 | CVE-2017-9378 | BigTree CMS through 4.2.18 does not prevent a user from deleting their own account. This could have security relevance because deletion was supposed to be an admin-only action, and the admin may have other tasks (such as data backups) to complete before a user is deleted. | 2 | 4 | Medium | 2017-06-12 | 2017-06-06 | View | |
86794 | CVE-2016-3066 | The spice-gtk widget allows remote authenticated users to obtain information from the host clipboard. | 2 | 4 | Medium | 2017-06-18 | 2017-06-14 | View |
Page 314 of 17672, showing 5 records out of 88360 total, starting on record 1566, ending on 1570