CVE List

Id CVE No. Status Description Phase Votes Comments Actions
96571  CVE-2016-9751  Candidate  Cross-site scripting (XSS) vulnerability in the search results front end in Piwigo 2.8.3 allows remote attackers to inject arbitrary web script or HTML via the search parameter.  Assigned (20161201)  None (candidate not yet proposed)    View
96572  CVE-2016-9752  Candidate  In Serendipity before 2.0.5, an attacker can bypass SSRF protection by using a malformed IP address (e.g., http://127.1) or a 30x (aka Redirection) HTTP status code.  Assigned (20161201)  None (candidate not yet proposed)    View
96573  CVE-2016-9753  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161201)  None (candidate not yet proposed)    View
96574  CVE-2016-9754  Candidate  The ring_buffer_resize function in kernel/trace/ring_buffer.c in the profiling subsystem in the Linux kernel before 4.6.1 mishandles certain integer calculations, which allows local users to gain privileges by writing to the /sys/kernel/debug/tracing/buffer_size_kb file.  Assigned (20161201)  None (candidate not yet proposed)    View
96575  CVE-2016-9755  Candidate  The netfilter subsystem in the Linux kernel before 4.9 mishandles IPv6 reassembly, which allows local users to cause a denial of service (integer overflow, out-of-bounds write, and GPF) or possibly have unspecified other impact via a crafted application that makes socket, connect, and writev system calls, related to net/ipv6/netfilter/nf_conntrack_reasm.c and net/ipv6/netfilter/nf_defrag_ipv6_hooks.c.  Assigned (20161201)  None (candidate not yet proposed)    View

Page 19315 of 20943, showing 5 records out of 104715 total, starting on record 96571, ending on 96575

Actions