NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
19736 | CVE-2016-4014 | XML external entity (XXE) vulnerability in the UDDI component in SAP NetWeaver JAVA AS 7.4 allows remote attackers to cause a denial of service (system hang) via a crafted DTD in an XML request to uddi/api/replication, aka SAP Security Note 2254389. | 2 | 9 | High | 2017-01-19 | 2016-08-15 | View | |
85272 | CVE-2016-10123 | Firejail allows --chroot when seccomp is not supported, which might allow local users to gain privileges. | 2 | 7.2 | High | 2017-04-27 | 2017-04-19 | View | |
19992 | CVE-2016-4291 | When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will use a field from the structure in an operation that can cause the integer to overflow. This result is then used to allocate memory to copy file data in. Due to the lack of bounds checking on the integer, the allocated memory buffer can be made to be undersized at which point the reading of file data will write outside the bounds of the buffer. This can lead to code execution under the context of the application. | 2 | 6.8 | Medium | 2017-01-19 | 2017-01-10 | View | |
20248 | CVE-2016-4639 | Login Window in Apple OS X before 10.11.6 does not properly initialize memory, which allows local users to cause a denial of service via unspecified vectors. | 2 | 4.4 | Medium | 2017-01-19 | 2016-11-28 | View | |
20504 | CVE-2016-5165 | Cross-site scripting (XSS) vulnerability in the Developer Tools (aka DevTools) subsystem in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux allows remote attackers to inject arbitrary web script or HTML via the settings parameter in a chrome-devtools-frontend.appspot.com URL"s query string. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View |
Page 1464 of 17672, showing 5 records out of 88360 total, starting on record 7316, ending on 7320