NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
21639 | CVE-2016-7093 | Xen 4.5.3, 4.6.3, and 4.7.x allow local HVM guest OS administrators to overwrite hypervisor memory and consequently gain host OS privileges by leveraging mishandling of instruction pointer truncation during emulation. | 2 | 7.2 | High | 2017-01-19 | 2016-11-28 | View | |
21638 | CVE-2016-7092 | The get_page_from_l3e function in arch/x86/mm.c in Xen allows local 32-bit PV guest OS administrators to gain host OS privileges via vectors related to L3 recursive pagetables. | 2 | 6.8 | Medium | 2017-01-19 | 2017-01-06 | View | |
21637 | CVE-2016-7091 | sudo: It was discovered that the default sudo configuration on Red Hat Enterprise Linux and possibly other Linux implementations preserves the value of INPUTRC which could lead to information disclosure. A local user with sudo access to a restricted program that uses readline could use this flaw to read content from specially formatted files with elevated privileges provided by sudo. | 2 | 4.9 | Medium | 2017-01-19 | 2016-12-23 | View | |
21636 | CVE-2016-7090 | The integrated web server on Siemens SCALANCE M-800 and S615 modules with firmware before 4.02 does not set the secure flag for the session cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View | |
21635 | CVE-2016-7089 | WatchGuard RapidStream appliances allow local users to gain privileges and execute arbitrary commands via a crafted ifconfig command, aka ESCALATEPLOWMAN. | 2 | 7.2 | High | 2017-01-19 | 2016-11-28 | View |
Page 1322 of 17672, showing 5 records out of 88360 total, starting on record 6606, ending on 6610