NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
82261 | CVE-2017-5954 | An issue was discovered in the serialize-to-js package 0.5.0 for Node.js. Untrusted data passed into the deserialize() function can be exploited to achieve arbitrary code execution by passing a JavaScript Object with an Immediately Invoked Function Expression (IIFE). | 2 | 7.5 | High | 2017-03-18 | 2017-03-13 | View | |
82517 | CVE-2017-2357 | An issue was discovered in certain Apple products. macOS before 10.12.3 is affected. The issue involves the IOAudioFamily component. It allows attackers to obtain sensitive kernel memory-layout information via a crafted app. | 2 | 4.3 | Medium | 2017-02-28 | 2017-02-22 | View | |
17493 | CVE-2016-1032 | Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1012, CVE-2016-1020, CVE-2016-1021, CVE-2016-1022, CVE-2016-1023, CVE-2016-1024, CVE-2016-1025, CVE-2016-1026, CVE-2016-1027, CVE-2016-1028, CVE-2016-1029, and CVE-2016-1033. | 2 | 10 | High | 2017-06-12 | 2017-06-07 | View | |
83029 | CVE-2017-0123 | Uniscribe in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka Uniscribe Information Disclosure Vulnerability. CVE-2017-0085, CVE-2017-0091, CVE-2017-0092, CVE-2017-0111, CVE-2017-0112, CVE-2017-0113, CVE-2017-0114, CVE-2017-0115, CVE-2017-0116, CVE-2017-0117, CVE-2017-0118, CVE-2017-0119, CVE-2017-0120, CVE-2017-0121, CVE-2017-0122, CVE-2017-0124, CVE-2017-0125, CVE-2017-0126, CVE-2017-0127, and CVE-2017-0128. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-17 | View | |
83285 | CVE-2017-6081 | A CSRF issue was discovered in Zammad before 1.0.4, 1.1.x before 1.1.3, and 1.2.x before 1.2.1. To exploit the vulnerability, an attacker can send cross-domain requests directly to the REST API for users with a valid session cookie. | 2 | 6.8 | Medium | 2017-03-18 | 2017-03-17 | View |
Page 910 of 17672, showing 5 records out of 88360 total, starting on record 4546, ending on 4550