NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85574 | CVE-2017-8419 | LAME through 3.99.5 relies on the signed integer data type for values in a WAV or AIFF header, which allows remote attackers to cause a denial of service (stack-based buffer overflow or heap-based buffer overflow) or possibly have unspecified other impact via a crafted file, as demonstrated by mishandling of num_channels. | 2 | 6.8 | Medium | 2017-05-27 | 2017-05-15 | View | |
85830 | CVE-2017-2499 | An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. Safari before 10.1.1 is affected. tvOS before 10.2.1 is affected. The issue involves the WebKit Web Inspector component. It allows attackers to execute arbitrary unsigned code or cause a denial of service (memory corruption) via a crafted app. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-07 | View | |
86086 | CVE-2017-8832 | Allen Disk 1.6 has XSS in the id parameter to downfile.php. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-16 | View | |
86342 | CVE-2015-5468 | Directory traversal vulnerability in the WP e-Commerce Shop Styling plugin before 2.6 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter to includes/download.php. | 2 | 5 | Medium | 2017-06-04 | 2017-06-01 | View | |
86598 | CVE-2017-2209 | Untrusted search path vulnerability in the installer of Houkokusyo Sakusei Shien Tool ver3.0.2 (For the first installation) (The version which was available on the website from 2017 April 4 to 2017 May 18) and ver2.0 and later (For the first installation) (The versions which were available on the website prior to 2017 April 4) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory. | 2 | 6.8 | Medium | 2017-06-23 | 2017-06-22 | View |
Page 797 of 17672, showing 5 records out of 88360 total, starting on record 3981, ending on 3985