CVE List

Id CVE No. Status Description Phase Votes Comments Actions
95491  CVE-2016-8671  Candidate  The pstm_exptmod function in MatrixSSL 3.8.6 and earlier does not properly perform modular exponentiation, which might allow remote attackers to predict the secret key via unspecified vectors. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-6887.  Assigned (20161015)  None (candidate not yet proposed)    View
95492  CVE-2016-8672  Candidate  The integrated web server on Siemens SIMATIC CP 343-1 Advanced prior to version 3.0.53, SIMATIC CP 443-1 Advanced prior to version 3.2.17, SIMATIC S7-300 CPU, and SIMATIC S7-400 CPU devices does not set the secure flag for unspecified cookies in an https session, which makes it easier for remote attackers to capture these cookies by intercepting their transmission within an http session.  Assigned (20161015)  None (candidate not yet proposed)    View
95493  CVE-2016-8673  Candidate  Cross-site request forgery (CSRF) vulnerability in the integrated web server on Siemens SIMATIC CP 343-1 Advanced prior to version 3.0.53, SIMATIC CP 443-1 Advanced prior to version 3.2.17, SIMATIC S7-300 CPU, and SIMATIC S7-400 CPU devices allows remote attackers to hijack the authentication of arbitrary users.  Assigned (20161015)  None (candidate not yet proposed)    View
95494  CVE-2016-8674  Candidate  The pdf_to_num function in pdf-object.c in MuPDF before 1.10 allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted file.  Assigned (20161015)  None (candidate not yet proposed)    View
95495  CVE-2016-8675  Candidate  The get_vlc2 function in get_bits.h in Libav before 11.9 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted mp3 file, possibly related to startcode sequences during m4v detection.  Assigned (20161015)  None (candidate not yet proposed)    View

Page 19099 of 20943, showing 5 records out of 104715 total, starting on record 95491, ending on 95495

Actions