NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
19736  CVE-2016-4014  XML external entity (XXE) vulnerability in the UDDI component in SAP NetWeaver JAVA AS 7.4 allows remote attackers to cause a denial of service (system hang) via a crafted DTD in an XML request to uddi/api/replication, aka SAP Security Note 2254389.    High  2017-01-19  2016-08-15  View
85272  CVE-2016-10123  Firejail allows --chroot when seccomp is not supported, which might allow local users to gain privileges.    7.2  High  2017-04-27  2017-04-19  View
19992  CVE-2016-4291  When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will use a field from the structure in an operation that can cause the integer to overflow. This result is then used to allocate memory to copy file data in. Due to the lack of bounds checking on the integer, the allocated memory buffer can be made to be undersized at which point the reading of file data will write outside the bounds of the buffer. This can lead to code execution under the context of the application.    6.8  Medium  2017-01-19  2017-01-10  View
20248  CVE-2016-4639  Login Window in Apple OS X before 10.11.6 does not properly initialize memory, which allows local users to cause a denial of service via unspecified vectors.    4.4  Medium  2017-01-19  2016-11-28  View
20504  CVE-2016-5165  Cross-site scripting (XSS) vulnerability in the Developer Tools (aka DevTools) subsystem in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux allows remote attackers to inject arbitrary web script or HTML via the settings parameter in a chrome-devtools-frontend.appspot.com URL"s query string.    4.3  Medium  2017-01-19  2016-11-28  View

Page 1464 of 17672, showing 5 records out of 88360 total, starting on record 7316, ending on 7320

Actions