NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
19201  CVE-2016-3386  The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory Corruption Vulnerability," a different vulnerability than CVE-2016-3389, CVE-2016-7190, and CVE-2016-7194.    9.3  High  2017-01-19  2016-11-28  View
84737  CVE-2017-6441  ** DISPUTED ** The _zval_get_long_func_ex in Zend/zend_operators.c in PHP 7.1.2 allows attackers to cause a denial of service (NULL pointer dereference and application crash) via crafted use of declare(ticks= in a PHP script. NOTE: the vendor disputes the classification of this as a vulnerability, stating Please do not request CVEs for ordinary bugs. CVEs are relevant for security issues only.    Medium  2017-04-27  2017-04-10  View
19457  CVE-2016-3676  Huawei E3276s USB modems with software before E3276s-150TCPU-V200R002B436D09SP00C00 allow man-in-the-middle attackers to intercept, spoof, or modify network traffic via unspecified vectors related to a fake network.    5.8  Medium  2017-01-19  2016-04-14  View
84993  CVE-2017-7951  WonderCMS before 2.0.3 has CSRF because of lack of a token in an unspecified context.    6.8  Medium  2017-04-27  2017-04-24  View
19713  CVE-2016-3982  Off-by-one error in the bmp_rle4_fread function in pngxrbmp.c in OptiPNG before 0.7.6 allows remote attackers to cause a denial of service (out-of-bounds read or write access and crash) or possibly execute arbitrary code via a crafted image file, which triggers a heap-based buffer overflow.    6.8  Medium  2017-01-19  2016-11-28  View

Page 98 of 17672, showing 5 records out of 88360 total, starting on record 486, ending on 490

Actions