NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
19474 | CVE-2016-3705 | The (1) xmlParserEntityCheck and (2) xmlParseAttValueComplex functions in parser.c in libxml2 2.9.3 do not properly keep track of the recursion depth, which allows context-dependent attackers to cause a denial of service (stack consumption and application crash) via a crafted XML document containing a large number of nested entity references. | 2 | 5 | Medium | 2017-01-19 | 2016-12-27 | View | |
85010 | CVE-2017-7989 | In Joomla! 3.2.0 through 3.6.5 (fixed in 3.7.0), inadequate MIME type checks allowed low-privilege users to upload swf files even if they were explicitly forbidden. | 2 | 4 | Medium | 2017-05-07 | 2017-05-02 | View | |
19730 | CVE-2016-4004 | Directory traversal vulnerability in Dell OpenManage Server Administrator (OMSA) 8.2 allows remote authenticated administrators to read arbitrary files via a .. (dot dot backslash) in the file parameter to ViewFile. | 2 | 4 | Medium | 2017-01-19 | 2016-12-02 | View | |
85522 | CVE-2017-8326 | libimageworsener.a in ImageWorsener before 1.3.1 has left shift cannot be represented in type int undefined behavior issues, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image, related to imagew-bmp.c and imagew-util.c. | 2 | 6.8 | Medium | 2017-07-18 | 2017-06-30 | View | |
20242 | CVE-2016-4632 | ImageIO in Apple iOS before 9.3.3, OS X before 10.11.6, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2016-11-28 | View |
Page 665 of 17672, showing 5 records out of 88360 total, starting on record 3321, ending on 3325