NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86090 | CVE-2017-8844 | The read_1g function in stream.c in liblrzip.so in lrzip 0.631 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted archive. | 2 | 6.8 | Medium | 2017-05-27 | 2017-05-16 | View | |
86089 | CVE-2017-8843 | The join_pthread function in stream.c in liblrzip.so in lrzip 0.631 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted archive. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-16 | View | |
86088 | CVE-2017-8842 | The bufRead::get() function in libzpaq/libzpaq.h in liblrzip.so in lrzip 0.631 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted archive. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-15 | View | |
86087 | CVE-2017-8833 | Zen Cart 1.6.0 has XSS in the main_page parameter to index.php. NOTE: 1.6.0 is not an official release but the vendor's README.md file offers a link to v160.zip with a description of Download latest in-development version from github. | 2 | 4.3 | Medium | 2017-06-03 | 2017-05-30 | View | |
86086 | CVE-2017-8832 | Allen Disk 1.6 has XSS in the id parameter to downfile.php. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-16 | View |
Page 455 of 17672, showing 5 records out of 88360 total, starting on record 2271, ending on 2275