NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83353  CVE-2017-6443  Cross-site scripting (XSS) vulnerability in EPSON TMNet WebConfig 1.00 allows remote attackers to inject arbitrary web script or HTML via the W_AD1 parameter to Forms/oadmin_1.    4.3  Medium  2017-03-18  2017-03-16  View
84737  CVE-2017-6441  ** DISPUTED ** The _zval_get_long_func_ex in Zend/zend_operators.c in PHP 7.1.2 allows attackers to cause a denial of service (NULL pointer dereference and application crash) via crafted use of declare(ticks= in a PHP script. NOTE: the vendor disputes the classification of this as a vulnerability, stating Please do not request CVEs for ordinary bugs. CVEs are relevant for security issues only.    Medium  2017-04-27  2017-04-10  View
83352  CVE-2017-6440  The parse_data_node function in bplist.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (memory allocation error) via a crafted plist file.    1.9  Low  2017-04-27  2017-04-13  View
83351  CVE-2017-6439  Heap-based buffer overflow in the parse_string_node function in bplist.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (out-of-bounds write) via a crafted plist file.    1.9  Low  2017-04-27  2017-04-03  View
83350  CVE-2017-6438  Heap-based buffer overflow in the parse_unicode_node function in bplist.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (out-of-bounds write) and possibly code execution via a crafted plist file.    4.4  Medium  2017-04-27  2017-04-03  View

Page 378 of 17672, showing 5 records out of 88360 total, starting on record 1886, ending on 1890

Actions