NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
86210  CVE-2017-9098  ImageMagick before 7.0.5-2 and GraphicsMagick before 1.3.24 use uninitialized memory in the RLE decoder, allowing an attacker to leak sensitive information from process memory space, as demonstrated by remote attacks against ImageMagick code in a long-running server process that converts image data on behalf of multiple users. This is caused by a missing initialization step in the ReadRLEImage function in coders/rle.c.    Medium  2017-06-03  2017-06-02  View
86209  CVE-2017-9094  The lzw_add_to_dict function in imagew-gif.c in libimageworsener.a in ImageWorsener 1.3.1 allows remote attackers to cause a denial of service (infinite loop) via a crafted image.    4.3  Medium  2017-06-03  2017-06-01  View
86208  CVE-2017-9093  The my_skip_input_data_fn function in imagew-jpeg.c in libimageworsener.a in ImageWorsener 1.3.1 allows remote attackers to cause a denial of service (infinite loop) via a crafted image.    4.3  Medium  2017-05-27  2017-05-24  View
86207  CVE-2017-9091  /admin/loginc.php in Allen Disk 1.6 doesn't check if isset($_SESSION['captcha']['code']) == 1, which leads to CAPTCHA bypass by emptying $_POST['captcha'].    Medium  2017-05-27  2017-05-24  View
86206  CVE-2017-9090  reg.php in Allen Disk 1.6 doesn't check if isset($_SESSION['captcha']['code'])==1, which makes it possible to bypass the CAPTCHA via an empty $_POST['captcha'].    Medium  2017-05-27  2017-05-24  View

Page 431 of 17672, showing 5 records out of 88360 total, starting on record 2151, ending on 2155

Actions