NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
82416  CVE-2016-8675  The get_vlc2 function in get_bits.h in Libav before 11.9 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted mp3 file, possibly related to startcode sequences during m4v detection.          2017-02-15  2017-02-15  View
17136  CVE-2016-0763  The setGlobalContext method in org/apache/naming/factory/ResourceLinkFactory.java in Apache Tomcat 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M3 does not consider whether ResourceLinkFactory.setGlobalContext callers are authorized, which allows remote authenticated users to bypass intended SecurityManager restrictions and read or write to arbitrary application data, or cause a denial of service (application disruption), via a web application that sets a crafted global context.    6.5  Medium  2017-01-19  2016-12-05  View
82672  CVE-2016-4493  The demangle_template_value_parm and do_hpacc_template_literal functions in cplus-dem.c in libiberty allow remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted binary.    4.3  Medium  2017-02-28  2017-02-27  View
17392  CVE-2016-1000143  Reflected XSS in wordpress plugin photoxhibit v2.1.8    4.3  Medium  2017-01-19  2016-11-28  View
17648  CVE-2016-1208  The server in Apple FileMaker before 14.0.4 on OS X allows remote attackers to read PHP source code via unspecified vectors.    Medium  2017-01-19  2016-05-19  View

Page 14526 of 17672, showing 5 records out of 88360 total, starting on record 72626, ending on 72630

Actions