NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86490 | CVE-2017-9261 | In ImageMagick 7.0.5-6 Q16, the ReadMNGImage function in coders/png.c allows attackers to cause a denial of service (memory leak) via a crafted file. | 2 | 4.3 | Medium | 2017-06-12 | 2017-06-05 | View | |
86489 | CVE-2017-9252 | andrzuk/FineCMS through 2017-05-28 is vulnerable to a reflected XSS in the search page via the text-search parameter to index.php in a route=search action. | 2 | 4.3 | Medium | 2017-06-12 | 2017-06-08 | View | |
86488 | CVE-2017-9251 | andrzuk/FineCMS through 2017-05-28 is vulnerable to a reflected XSS in the sitename parameter to admin.php. | 2 | 4.3 | Medium | 2017-06-12 | 2017-06-08 | View | |
86487 | CVE-2017-9250 | The lexer_process_char_literal function in jerry-core/parser/js/js-lexer.c in JerryScript 1.0 does not skip memory allocation for empty strings, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via malformed JavaScript source code, related to the jmem_heap_free_block function. | 2 | 5 | Medium | 2017-07-18 | 2017-07-07 | View | |
86486 | CVE-2017-9249 | Cross-site scripting (XSS) vulnerability in Allen Disk 1.6 allows remote authenticated users to inject arbitrary web script or HTML persistently by uploading a crafted HTML file. The attack vector is the content of this file, and the filename must be specified in the PATH_INFO to readfile.php. | 2 | 3.5 | Low | 2017-06-12 | 2017-06-06 | View |
Page 375 of 17672, showing 5 records out of 88360 total, starting on record 1871, ending on 1875