NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83503 | CVE-2017-6961 | An issue was discovered in apng2gif 1.7. There is improper sanitization of user input causing huge memory allocations, resulting in a crash. This is related to the read_chunk function using the pChunk->size value (within the PNG file) to determine the amount of memory to allocate. | 2 | 4.3 | Medium | 2017-03-29 | 2017-03-20 | View | |
83759 | CVE-2017-6058 | Buffer overflow in NetRxPkt::ehdr_buf in hw/net/net_rx_pkt.c in QEMU (aka Quick Emulator), when the VLANSTRIP feature is enabled on the vmxnet3 device, allows remote attackers to cause a denial of service (out-of-bounds access and QEMU process crash) via vectors related to VLAN stripping. | 2 | 5 | Medium | 2017-07-18 | 2017-06-30 | View | |
84271 | CVE-2017-2393 | An issue was discovered in certain Apple products. iOS before 10.3 is affected. The issue involves the Safari Reader component. It allows remote attackers to conduct Universal XSS (UXSS) attacks via a crafted web site. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-11 | View | |
84527 | CVE-2017-3515 | Vulnerability in the Oracle User Management component of Oracle E-Business Suite (subcomponent: User Name/Password Management). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5 and 12.2.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle User Management. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle User Management, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle User Management accessible data. CVSS 3.0 Base Score 4.7 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N). | 2 | 5.8 | Medium | 2017-07-18 | 2017-07-17 | View | |
84783 | CVE-2017-7279 | An unprivileged user of the Unitrends Enterprise Backup before 9.0.0 web server can escalate to root privileges by modifying the token cookie issued at login. | 2 | 10 | High | 2017-04-27 | 2017-04-20 | View |
Page 617 of 17672, showing 5 records out of 88360 total, starting on record 3081, ending on 3085