NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86510 | CVE-2017-9305 | lib/core/TikiFilter/PreventXss.php in Tiki Wiki CMS Groupware 16.2 allows remote attackers to bypass the XSS filter via padded zero characters, as demonstrated by an attack on tiki-batch_send_newsletter.php. | 2 | 4.3 | Medium | 2017-06-12 | 2017-06-08 | View | |
86509 | CVE-2017-9304 | libyara/re.c in the regexp module in YARA 3.5.0 allows remote attackers to cause a denial of service (stack consumption) via a crafted rule that is mishandled in the _yr_re_emit function. | 2 | 5 | Medium | 2017-06-12 | 2017-06-06 | View | |
86508 | CVE-2017-9303 | Laravel 5.4.x before 5.4.22 does not properly constrain the host portion of a password-reset URL, which makes it easier for remote attackers to conduct phishing attacks by specifying an attacker-controlled host. | 2 | 5.8 | Medium | 2017-06-12 | 2017-06-08 | View | |
86507 | CVE-2017-9302 | RealPlayer 16.0.2.32 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted mp4 file. | 2 | 4.3 | Medium | 2017-06-12 | 2017-06-08 | View | |
86506 | CVE-2017-9301 | pluginsaudio_filterlibmpgatofixed32_plugin.dll in VideoLAN VLC media player 2.2.4 allows remote attackers to cause a denial of service (invalid read and application crash) or possibly have unspecified other impact via a crafted file. | 2 | 6.8 | Medium | 2017-06-12 | 2017-06-06 | View |
Page 371 of 17672, showing 5 records out of 88360 total, starting on record 1851, ending on 1855