NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
22246 | CVE-2016-8909 | The intel_hda_xfer function in hw/audio/intel-hda.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) via an entry with the same value for buffer length and pointer position. | 2 | 1.9 | Low | 2017-01-19 | 2017-01-06 | View | |
22245 | CVE-2016-8908 | SQL injection vulnerability in the "Site Browser > HTML pages" screen in dotCMS before 3.3.1 allows remote authenticated attackers to execute arbitrary SQL commands via the orderby parameter. | 2 | 6.5 | Medium | 2017-01-19 | 2016-11-29 | View | |
22244 | CVE-2016-8907 | SQL injection vulnerability in the "Content Types > Content Types" screen in dotCMS before 3.3.1 allows remote authenticated attackers to execute arbitrary SQL commands via the orderby parameter. | 2 | 6.5 | Medium | 2017-01-19 | 2016-11-29 | View | |
22243 | CVE-2016-8906 | SQL injection vulnerability in the "Site Browser > Links pages" screen in dotCMS before 3.3.1 allows remote authenticated attackers to execute arbitrary SQL commands via the orderby parameter. | 2 | 6.5 | Medium | 2017-01-19 | 2016-11-29 | View | |
22242 | CVE-2016-8905 | SQL injection vulnerability in the JSONTags servlet in dotCMS before 3.3.1 allows remote authenticated attackers to execute arbitrary SQL commands via the sort parameter. | 2 | 6.5 | Medium | 2017-01-19 | 2016-11-29 | View |
Page 1109 of 17672, showing 5 records out of 88360 total, starting on record 5541, ending on 5545