NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85039 | CVE-2017-8077 | On the TP-Link TL-SG108E 1.0, there is a hard-coded ciphering key (a long string beginning with Ei2HNryt). This affects the 1.1.2 Build 20141017 Rel.50749 firmware. | 2 | 5 | Medium | 2017-05-07 | 2017-04-27 | View | |
85551 | CVE-2017-8372 | The mad_layer_III function in layer3.c in Underbit MAD libmad 0.15.1b, if NDEBUG is omitted, allows remote attackers to cause a denial of service (assertion failure and application exit) via a crafted audio file. | 2 | 2.6 | Low | 2017-05-27 | 2017-05-11 | View | |
85807 | CVE-2017-1289 | IBM SDK, Java Technology Edition is vulnerable XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerability to expose highly sensitive information or consume memory resources. IBM X-Force ID: 125150. | 2 | 6.4 | Medium | 2017-06-03 | 2017-06-02 | View | |
86063 | CVE-2017-8313 | Heap out-of-bound read in ParseJSS in VideoLAN VLC before 2.2.5 due to missing check of string termination allows attackers to read data beyond allocated memory and potentially crash the process via a crafted subtitles file. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
86575 | CVE-2017-1140 | IBM Business Process Manager 8.0 and 8.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. | 2 | 3.5 | Low | 2017-06-17 | 2017-06-13 | View |
Page 618 of 17672, showing 5 records out of 88360 total, starting on record 3086, ending on 3090