NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
17393  CVE-2016-1000144  Reflected XSS in wordpress plugin photoxhibit v2.1.8    4.3  Medium  2017-01-19  2016-12-22  View
17649  CVE-2016-1209  The Ninja Forms plugin before 2.9.42.1 for WordPress allows remote attackers to conduct PHP object injection attacks via crafted serialized values in a POST request.    7.5  High  2017-01-19  2016-06-23  View
17905  CVE-2016-1498  Cross-site scripting (XSS) vulnerability in the OCS discovery provider component in ownCloud Server before 7.0.12, 8.0.x before 8.0.10, 8.1.x before 8.1.5, and 8.2.x before 8.2.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving a URL.    4.3  Medium  2017-01-19  2016-01-11  View
18161  CVE-2016-1813  The IOAccelSharedUserClient2::page_off_resource method in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (NULL pointer dereference) via a crafted app.    9.3  High  2017-01-19  2016-11-30  View
18417  CVE-2016-2140  The libvirt driver in OpenStack Compute (Nova) before 2015.1.4 (kilo) and 12.0.x before 12.0.3 (liberty), when using raw storage and use_cow_images is set to false, allows remote authenticated users to read arbitrary files via a crafted qcow2 header in an ephemeral or root disk.    3.5  Low  2017-01-19  2016-11-28  View

Page 14587 of 17672, showing 5 records out of 88360 total, starting on record 72931, ending on 72935

Actions