NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
21639  CVE-2016-7093  Xen 4.5.3, 4.6.3, and 4.7.x allow local HVM guest OS administrators to overwrite hypervisor memory and consequently gain host OS privileges by leveraging mishandling of instruction pointer truncation during emulation.    7.2  High  2017-01-19  2016-11-28  View
21638  CVE-2016-7092  The get_page_from_l3e function in arch/x86/mm.c in Xen allows local 32-bit PV guest OS administrators to gain host OS privileges via vectors related to L3 recursive pagetables.    6.8  Medium  2017-01-19  2017-01-06  View
21637  CVE-2016-7091  sudo: It was discovered that the default sudo configuration on Red Hat Enterprise Linux and possibly other Linux implementations preserves the value of INPUTRC which could lead to information disclosure. A local user with sudo access to a restricted program that uses readline could use this flaw to read content from specially formatted files with elevated privileges provided by sudo.    4.9  Medium  2017-01-19  2016-12-23  View
21636  CVE-2016-7090  The integrated web server on Siemens SCALANCE M-800 and S615 modules with firmware before 4.02 does not set the secure flag for the session cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session.    4.3  Medium  2017-01-19  2016-11-28  View
21635  CVE-2016-7089  WatchGuard RapidStream appliances allow local users to gain privileges and execute arbitrary commands via a crafted ifconfig command, aka ESCALATEPLOWMAN.    7.2  High  2017-01-19  2016-11-28  View

Page 1322 of 17672, showing 5 records out of 88360 total, starting on record 6606, ending on 6610

Actions