NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
22241  CVE-2016-8904  SQL injection vulnerability in the "Site Browser > Containers pages" screen in dotCMS before 3.3.1 allows remote authenticated attackers to execute arbitrary SQL commands via the orderby parameter.    6.5  Medium  2017-01-19  2016-11-29  View
22240  CVE-2016-8903  SQL injection vulnerability in the "Site Browser > Templates pages" screen in dotCMS before 3.3.1 allows remote authenticated attackers to execute arbitrary SQL commands via the orderby parameter.    6.5  Medium  2017-01-19  2016-11-29  View
22239  CVE-2016-8902  SQL injection vulnerability in the categoriesServlet servlet in dotCMS before 3.3.1 allows remote not authenticated attackers to execute arbitrary SQL commands via the sort parameter.    7.5  High  2017-01-19  2016-11-29  View
22238  CVE-2016-8889  In Bitcoin Knots v0.11.0.ljr20150711 through v0.13.0.knots20160814 (fixed in v0.13.1.knots20161027), the debug console stores sensitive information including private keys and the wallet passphrase in its persistent command history.    2.1  Low  2017-01-19  2016-11-29  View
83984  CVE-2016-8887  The jp2_colr_destroy function in libjasper/jp2/jp2_cod.c in JasPer before 1.900.10 allows remote attackers to cause a denial of service (NULL pointer dereference).    4.3  Medium  2017-03-29  2017-03-27  View

Page 1110 of 17672, showing 5 records out of 88360 total, starting on record 5546, ending on 5550

Actions