NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86536 | CVE-2017-9366 | Telaxus EPESI 1.8.2 and earlier has a Stored Cross-site Scripting (XSS) vulnerability in modules/Base/Dashboard/Dashboard_0.php, which allows remote attackers to inject arbitrary web script or HTML via a crafted tab_name parameter. | 2 | 3.5 | Low | 2017-06-12 | 2017-06-09 | View | |
21256 | CVE-2016-6494 | The client in MongoDB uses world-readable permissions on .dbshell history files, which might allow local users to obtain sensitive information by reading these files. | 2 | 2.1 | Low | 2017-01-19 | 2016-10-04 | View | |
86792 | CVE-2016-3019 | IBM Security Access Manager for Web 9.0.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 114462. | 2 | 4 | Medium | 2017-06-18 | 2017-06-12 | View | |
21512 | CVE-2016-6905 | The read_image_tga function in gd_tga.c in the GD Graphics Library (aka libgd) before 2.2.3 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TGA image. | 2 | 4.3 | Medium | 2017-03-18 | 2017-03-15 | View | |
87048 | CVE-2017-8507 | A remote code execution vulnerability exists in the way Microsoft Office software parses specially crafted email messages, aka Microsoft Office Memory Corruption Vulnerability. | 2 | 9.3 | High | 2017-07-18 | 2017-07-07 | View |
Page 577 of 17672, showing 5 records out of 88360 total, starting on record 2881, ending on 2885