CVE List

Id CVE No. Status Description Phase Votes Comments Actions
96065  CVE-2016-9245  Candidate  In F5 BIG-IP systems 12.1.0 - 12.1.2, malicious requests made to virtual servers with an HTTP profile can cause the TMM to restart. The issue is exposed with BIG-IP APM profiles, regardless of settings. The issue is also exposed with the non-default "Normalize URI" configuration options used in iRules and/or BIG-IP LTM policies. An attacker may be able to disrupt traffic or cause the BIG-IP system to fail over to another device in the device group.  Assigned (20161109)  None (candidate not yet proposed)    View
96064  CVE-2016-9244  Candidate  A BIG-IP virtual server configured with a Client SSL profile that has the non-default Session Tickets option enabled may leak up to 31 bytes of uninitialized memory. A remote attacker may exploit this vulnerability to obtain Secure Sockets Layer (SSL) session IDs from other sessions. It is possible that other data from uninitialized memory may be returned as well.  Assigned (20161109)  None (candidate not yet proposed)    View
96063  CVE-2016-9243  Candidate  HKDF in cryptography before 1.5.2 returns an empty byte-string if used with a length less than algorithm.digest_size.  Assigned (20161109)  None (candidate not yet proposed)    View
96062  CVE-2016-9242  Candidate  Multiple SQL injection vulnerabilities in the update method in framework/modules/core/controllers/expRatingController.php in Exponent CMS 2.4.0 allow remote authenticated users to execute arbitrary SQL commands via the (1) content_type or (2) subtype parameter.  Assigned (20161107)  None (candidate not yet proposed)    View
96061  CVE-2016-9241  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161106)  None (candidate not yet proposed)    View

Page 1731 of 20943, showing 5 records out of 104715 total, starting on record 8651, ending on 8655

Actions