NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
87903 | CVE-2017-2216 | Cross-site scripting vulnerability in WordPress Download Manager prior to version 2.9.50 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-14 | View | |
88159 | CVE-2017-8579 | The DirectX component in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an authenticated attacker to run arbitrary code in kernel mode via a specially crafted application, aka DirectX Elevation of Privilege Vulnerability. | 2 | 6.9 | Medium | 2017-07-18 | 2017-07-03 | View | |
28511 | CVE-2015-8317 | The xmlParseXMLDecl function in parser.c in libxml2 before 2.9.3 allows context-dependent attackers to obtain sensitive information via an (1) unterminated encoding value or (2) incomplete XML declaration in XML data, which triggers an out-of-bounds heap read. | 2 | 5 | Medium | 2017-06-12 | 2017-06-07 | View | |
65888 | CVE-2005-0108 | Apache mod_auth_radius 1.5.4 and libpam-radius-auth allow remote malicious RADIUS servers to cause a denial of service (crash) via a RADIUS_REPLY_MESSAGE with a RADIUS attribute length of 1, which leads to a memcpy operation with a -1 length argument. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
66912 | CVE-2005-1163 | Multiple buffer overflows in Yager 5.24 and earlier allow remote attackers to execute arbitrary code via (1) a crafted nickname or (2) a packet with a large amount of data. | 2 | 6.4 | Medium | 2017-07-18 | 2017-07-11 | View |
Page 988 of 17672, showing 5 records out of 88360 total, starting on record 4936, ending on 4940