NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 83664 | CVE-2016-10104 | Information Disclosure can occur in sshProfiles.jsd in Hitek Software"s Automize because of the Read attribute being set for Users. This allows an attacker to recover encrypted passwords for SSH/SFTP profiles. Verified in all 10.x versions up to and including 10.25, and all 11.x versions up to and including 11.14. | 2 | 4.3 | Medium | 2017-03-18 | 2017-03-15 | View | |
| 18384 | CVE-2016-2078 | Cross-site scripting (XSS) vulnerability in the Web Client in VMware vCenter Server 5.1 before update 3d, 5.5 before update 3d, and 6.0 before update 2 on Windows allows remote attackers to inject arbitrary web script or HTML via the flashvars parameter. | 2 | 4.3 | Medium | 2017-01-19 | 2016-06-16 | View | |
| 83920 | CVE-2016-10055 | Buffer overflow in the WritePDBImage function in coders/pdb.c in ImageMagick before 6.9.5-8 allows remote attackers to cause a denial of service (application crash) or have other unspecified impact via a crafted file. | 2 | 6.8 | Medium | 2017-03-29 | 2017-03-24 | View | |
| 18640 | CVE-2016-2425 | mail/compose/ComposeActivity.java in AOSP Mail in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 supports file:///data attachments, which allows attackers to obtain sensitive information via a crafted application, aka internal bugs 7154234 and 26989185. | 2 | 4.3 | Medium | 2017-01-19 | 2016-04-25 | View | |
| 18896 | CVE-2016-2952 | IBM BigFix Remote Control before 9.1.3 does not enable the HSTS protection mechanism, which makes it easier for remote attackers to obtain sensitive information by leveraging use of HTTP. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-02 | View |
Page 14786 of 17672, showing 5 records out of 88360 total, starting on record 73926, ending on 73930