NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
22393  CVE-2016-9451  Confirmation forms in Drupal 7.x before 7.52 make it easier for remote authenticated users to conduct open redirect attacks via unspecified vectors.    4.9  Medium  2017-01-19  2017-01-06  View
22392  CVE-2016-9450  The user password reset form in Drupal 8.x before 8.2.3 allows remote attackers to conduct cache poisoning attacks by leveraging failure to specify a correct cache context.    Medium  2017-01-19  2016-11-29  View
22391  CVE-2016-9449  The taxonomy module in Drupal 7.x before 7.52 and 8.x before 8.2.3 might allow remote authenticated users to obtain sensitive information about taxonomy terms by leveraging inconsistent naming of access query tags.    Medium  2017-01-19  2017-01-06  View
82118  CVE-2016-9448  The TIFFFetchNormalTag function in LibTiff 4.0.6 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) by setting the tags TIFF_SETGET_C16ASCII or TIFF_SETGET_C32_ASCII to values that access 0-byte arrays. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-9297.    Medium  2017-02-08  2017-02-07  View
22390  CVE-2016-9444  named in ISC BIND 9.x before 9.9.9-P5, 9.10.x before 9.10.4-P5, and 9.11.x before 9.11.0-P2 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted DS resource record in an answer.    Medium  2017-01-19  2017-01-17  View

Page 1043 of 17672, showing 5 records out of 88360 total, starting on record 5211, ending on 5215

Actions