CVE List

Id CVE No. Status Description Phase Votes Comments Actions
93301  CVE-2016-6481  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160727)  None (candidate not yet proposed)    View
93302  CVE-2016-6482  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160727)  None (candidate not yet proposed)    View
93303  CVE-2016-6483  Candidate  The media-file upload feature in vBulletin before 3.8.7 Patch Level 6, 3.8.8 before Patch Level 2, 3.8.9 before Patch Level 1, 4.x before 4.2.2 Patch Level 6, 4.2.3 before Patch Level 2, 5.x before 5.2.0 Patch Level 3, 5.2.1 before Patch Level 1, and 5.2.2 before Patch Level 1 allows remote attackers to conduct SSRF attacks via a crafted URL that results in a Redirection HTTP status code.  Assigned (20160727)  None (candidate not yet proposed)    View
93304  CVE-2016-6484  Candidate  CRLF injection vulnerability in Infoblox Network Automation NetMRI before 7.1.1 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the contentType parameter in a login action to config/userAdmin/login.tdf.  Assigned (20160727)  None (candidate not yet proposed)    View
93305  CVE-2016-6485  Candidate  The __construct function in Framework/Encryption/Crypt.php in Magento 2 uses the PHP rand function to generate a random number for the initialization vector, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by guessing the value.  Assigned (20160727)  None (candidate not yet proposed)    View

Page 18661 of 20943, showing 5 records out of 104715 total, starting on record 93301, ending on 93305

Actions