NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85370 | CVE-2017-1194 | IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 123669. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
86394 | CVE-2015-8996 | In TrustZone a time-of-check time-of-use race condition could potentially exist in a QFPROM routine in all Android releases from CAF using the Linux kernel. | 2 | 7.6 | High | 2017-07-18 | 2017-07-10 | View | |
86906 | CVE-2017-0647 | An information disclosure vulnerability in libziparchive could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access sensitive data without permission. Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-36392138. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-07 | View | |
87162 | CVE-2017-9735 | Jetty through 9.4.x is prone to a timing channel in util/security/Password.java, which makes it easier for remote attackers to obtain access by observing elapsed times before rejection of incorrect passwords. | 2 | 5 | Medium | 2017-07-18 | 2017-07-05 | View | |
87418 | CVE-2017-9869 | The II_step_one function in layer2.c in mpglib, as used in libmpgdecoder.a in LAME 3.99.5 and other products, allows remote attackers to cause a denial of service (buffer over-read and application crash) via a crafted audio file. | 2 | 4.3 | Medium | 2017-07-18 | 2017-06-28 | View |
Page 668 of 17672, showing 5 records out of 88360 total, starting on record 3336, ending on 3340