NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
21012 | CVE-2016-5978 | Cross-site scripting (XSS) vulnerability in the Web UI in the web portal in IBM Tealeaf Customer Experience before 8.7.1.8847 FP10, 8.8 before 8.8.0.9049 FP9, 9.0.0 and 9.0.1 before 9.0.1.1117 FP5, 9.0.1A before 9.0.1.5108_9.0.1A FP5, 9.0.2 before 9.0.2.1223 FP3, and 9.0.2A before 9.0.2.5224_9.0.2A FP3 allows remote authenticated users to inject arbitrary web script or HTML via an embedded string, a different vulnerability than CVE-2016-5975. | 2 | 3.5 | Low | 2017-01-19 | 2016-11-28 | View | |
86548 | CVE-2015-0936 | Ceragon FibeAir IP-10 have a default SSH public key in the authorized_keys file for the mateidu user, which allows remote attackers to obtain SSH access by leveraging knowledge of the private key. | 2 | 7.5 | High | 2017-06-12 | 2017-06-09 | View | |
21268 | CVE-2016-6511 | epan/proto.c in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 allows remote attackers to cause a denial of service (OpenFlow dissector large loop) via a crafted packet. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View | |
86804 | CVE-2016-4457 | CloudForms Management Engine before 5.8 includes a default SSL/TLS certificate. | 2 | 5 | Medium | 2017-06-18 | 2017-06-16 | View | |
21524 | CVE-2016-6930 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.375 and 19.x through 23.x before 23.0.0.162 on Windows and OS X and before 11.2.202.635 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-4272, CVE-2016-4279, CVE-2016-6921, CVE-2016-6923, CVE-2016-6925, CVE-2016-6926, CVE-2016-6927, CVE-2016-6929, CVE-2016-6931, and CVE-2016-6932. | 2 | 10 | High | 2017-01-19 | 2016-11-28 | View |
Page 1392 of 17672, showing 5 records out of 88360 total, starting on record 6956, ending on 6960