NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86061 | CVE-2017-8311 | Potential heap based buffer overflow in ParseJSS in VideoLAN VLC before 2.2.5 due to skipping NULL terminator in an input string allows attackers to execute arbitrary code via a crafted subtitles file. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
86573 | CVE-2017-1000368 | Todd Miller's sudo version 1.8.20p1 and earlier is vulnerable to an input validation (embedded newlines) in the get_process_ttyname() function resulting in information disclosure and command execution. | 2 | 7.2 | High | 2017-06-12 | 2017-06-08 | View | |
86829 | CVE-2016-7802 | Directory traversal vulnerability in Cybozu Garoon 3.0.0 to 4.2.2 allows remote authenticated attackers to read arbitrary files via unspecified vectors. | 2 | 4 | Medium | 2017-06-18 | 2017-06-13 | View | |
87085 | CVE-2017-9231 | XML external entity (XXE) vulnerability in Citrix XenMobile Server 9.x and 10.x before 10.5 RP3 allows attackers to obtain sensitive information via unspecified vectors. | 2 | 5 | Medium | 2017-07-18 | 2017-07-06 | View | |
87341 | CVE-2017-9807 | An issue was discovered in the OpenWebif plugin through 1.2.4 for E2 open devices. The saveConfig function of plugin/controllers/models/config.py performs an eval() call on the contents of the key HTTP GET parameter. This allows an unauthenticated remote attacker to execute arbitrary Python code or OS commands via api/saveconfig. | 2 | 10 | High | 2017-07-18 | 2017-07-03 | View |
Page 603 of 17672, showing 5 records out of 88360 total, starting on record 3011, ending on 3015