NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
22393 | CVE-2016-9451 | Confirmation forms in Drupal 7.x before 7.52 make it easier for remote authenticated users to conduct open redirect attacks via unspecified vectors. | 2 | 4.9 | Medium | 2017-01-19 | 2017-01-06 | View | |
22392 | CVE-2016-9450 | The user password reset form in Drupal 8.x before 8.2.3 allows remote attackers to conduct cache poisoning attacks by leveraging failure to specify a correct cache context. | 2 | 5 | Medium | 2017-01-19 | 2016-11-29 | View | |
22391 | CVE-2016-9449 | The taxonomy module in Drupal 7.x before 7.52 and 8.x before 8.2.3 might allow remote authenticated users to obtain sensitive information about taxonomy terms by leveraging inconsistent naming of access query tags. | 2 | 4 | Medium | 2017-01-19 | 2017-01-06 | View | |
82118 | CVE-2016-9448 | The TIFFFetchNormalTag function in LibTiff 4.0.6 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) by setting the tags TIFF_SETGET_C16ASCII or TIFF_SETGET_C32_ASCII to values that access 0-byte arrays. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-9297. | 2 | 5 | Medium | 2017-02-08 | 2017-02-07 | View | |
22390 | CVE-2016-9444 | named in ISC BIND 9.x before 9.9.9-P5, 9.10.x before 9.10.4-P5, and 9.11.x before 9.11.0-P2 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted DS resource record in an answer. | 2 | 5 | Medium | 2017-01-19 | 2017-01-17 | View |
Page 1043 of 17672, showing 5 records out of 88360 total, starting on record 5211, ending on 5215