NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
21876 | CVE-2016-7490 | The installation script studioexpressinstall for Teradata Studio Express 15.12.00.00 creates files in /tmp insecurely. A malicious local user could create a symlink in /tmp and possibly clobber system files or perhaps elevate privileges. | 2 | 7.2 | High | 2017-01-19 | 2016-12-02 | View | |
21875 | CVE-2016-7489 | Teradata Virtual Machine Community Edition v15.10"s perl script /opt/teradata/gsctools/bin/t2a.pl creates files in /tmp in an insecure manner, this may lead to elevated code execution. | 2 | 10 | High | 2017-01-19 | 2016-12-02 | View | |
21874 | CVE-2016-7488 | Teradata Virtual Machine Community Edition v15.10 has insecure file permissions on /etc/luminex/pkgmgr. These could allow a local user to modify its contents and execute commands as root. | 2 | 7.2 | High | 2017-01-19 | 2016-12-02 | View | |
21873 | CVE-2016-7480 | The SplObjectStorage unserialize implementation in ext/spl/spl_observer.c in PHP before 7.0.12 does not verify that a key is an object, which allows remote attackers to execute arbitrary code or cause a denial of service (uninitialized memory access) via crafted serialized data. | 2 | 7.5 | High | 2017-01-19 | 2017-01-12 | View | |
21872 | CVE-2016-7479 | In all versions of PHP 7, during the unserialization process, resizing the "properties" hash table of a serialized object may lead to use-after-free. A remote attacker may exploit this bug to gain arbitrary code execution. | 2 | 7.5 | High | 2017-01-19 | 2017-01-13 | View |
Page 1271 of 17672, showing 5 records out of 88360 total, starting on record 6351, ending on 6355