NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
17423  CVE-2016-10033  The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a " (backslash double quote) in a crafted Sender property.    7.5  High  2017-01-30  2017-01-25  View
83727  CVE-2017-5337  Multiple heap-based buffer overflows in the read_attribute function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allow remote attackers to have unspecified impact via a crafted OpenPGP certificate.    7.5  High  2017-03-29  2017-03-27  View
18447  CVE-2016-2177  OpenSSL through 1.0.2h incorrectly uses pointer arithmetic for heap-buffer boundary checks, which might allow remote attackers to cause a denial of service (integer overflow and application crash) or possibly have unspecified other impact by leveraging unexpected malloc behavior, related to s3_srvr.c, ssl_sess.c, and t1_lib.c.    7.5  High  2017-02-28  2017-02-23  View
18703  CVE-2016-2490  The NVIDIA camera driver in Android before 2016-06-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27533373.    9.3  High  2017-01-19  2016-06-14  View
18959  CVE-2016-3081  Apache Struts 2.x before 2.3.20.2, 2.3.24.x before 2.3.24.2, and 2.3.28.x before 2.3.28.1, when Dynamic Method Invocation is enabled, allow remote attackers to execute arbitrary code via method: prefix, related to chained expressions.    9.3  High  2017-01-19  2016-11-30  View

Page 763 of 17672, showing 5 records out of 88360 total, starting on record 3811, ending on 3815

Actions