NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
21891 | CVE-2016-7570 | Drupal 8.x before 8.1.10 does not properly check for "Administer comments" permission, which allows remote authenticated users to set the visibility of comments for arbitrary nodes by leveraging rights to edit those nodes. | 2 | 4 | Medium | 2017-01-19 | 2016-10-04 | View | |
82046 | CVE-2016-7569 | Directory traversal vulnerability in docker2aci before 0.13.0 allows remote attackers to write to arbitrary files via a .. (dot dot) in the embedded layer data in an image. | 2 | 4.3 | Medium | 2017-02-08 | 2017-02-05 | View | |
21890 | CVE-2016-7568 | Integer overflow in the gdImageWebpCtx function in gd_webp.c in the GD Graphics Library (aka libgd) through 2.2.3, as used in PHP through 7.0.11, allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via crafted imagewebp and imagedestroy calls. | 2 | 7.5 | High | 2017-01-19 | 2016-11-28 | View | |
88352 | CVE-2016-7567 | Buffer overflow in the SLPFoldWhiteSpace function in common/slp_compare.c in OpenSLP 2.0 allows remote attackers to have unspecified impact via a crafted string. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
82369 | CVE-2016-7565 | install/index.php in Exponent CMS 2.3.9 allows remote attackers to execute arbitrary commands via shell metacharacters in the sc array parameter. | 2017-02-15 | 2017-02-13 | View |
Page 1261 of 17672, showing 5 records out of 88360 total, starting on record 6301, ending on 6305