CVE List

Id CVE No. Status Description Phase Votes Comments Actions
96381  CVE-2016-9561  Candidate  The che_configure function in libavcodec/aacdec_template.c in FFmpeg before 3.2.1 allows remote attackers to cause a denial of service (allocation of huge memory, and being killed by the OS) via a crafted MOV file.  Assigned (20161122)  None (candidate not yet proposed)    View
96382  CVE-2016-9562  Candidate  SAP NetWeaver AS JAVA 7.4 allows remote attackers to cause a Denial of Service (null pointer exception and icman outage) via an HTTPS request to the sap.com~P4TunnelingApp!web/myServlet URI, aka SAP Security Note 2313835.  Assigned (20161122)  None (candidate not yet proposed)    View
96383  CVE-2016-9563  Candidate  BC-BMT-BPM-DSK in SAP NetWeaver AS JAVA 7.5 allows remote authenticated users to conduct XML External Entity (XXE) attacks via the sap.com~tc~bpem~him~uwlconn~provider~web/bpemuwlconn URI, aka SAP Security Note 2296909.  Assigned (20161122)  None (candidate not yet proposed)    View
96384  CVE-2016-9564  Candidate  Buffer overflow in send_redirect() in Boa Webserver 0.92r allows remote attackers to DoS via an HTTP GET request requesting a long URI with only "/" and "." characters.  Assigned (20161122)  None (candidate not yet proposed)    View
96385  CVE-2016-9565  Candidate  MagpieRSS, as used in the front-end component in Nagios Core before 4.2.2 might allow remote attackers to read or write to arbitrary files by spoofing a crafted response from the Nagios RSS feed server. NOTE: this vulnerability exists because of an incomplete fix for CVE-2008-4796.  Assigned (20161122)  None (candidate not yet proposed)    View

Page 19277 of 20943, showing 5 records out of 104715 total, starting on record 96381, ending on 96385

Actions