NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83664  CVE-2016-10104  Information Disclosure can occur in sshProfiles.jsd in Hitek Software"s Automize because of the Read attribute being set for Users. This allows an attacker to recover encrypted passwords for SSH/SFTP profiles. Verified in all 10.x versions up to and including 10.25, and all 11.x versions up to and including 11.14.    4.3  Medium  2017-03-18  2017-03-15  View
18384  CVE-2016-2078  Cross-site scripting (XSS) vulnerability in the Web Client in VMware vCenter Server 5.1 before update 3d, 5.5 before update 3d, and 6.0 before update 2 on Windows allows remote attackers to inject arbitrary web script or HTML via the flashvars parameter.    4.3  Medium  2017-01-19  2016-06-16  View
83920  CVE-2016-10055  Buffer overflow in the WritePDBImage function in coders/pdb.c in ImageMagick before 6.9.5-8 allows remote attackers to cause a denial of service (application crash) or have other unspecified impact via a crafted file.    6.8  Medium  2017-03-29  2017-03-24  View
18640  CVE-2016-2425  mail/compose/ComposeActivity.java in AOSP Mail in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 supports file:///data attachments, which allows attackers to obtain sensitive information via a crafted application, aka internal bugs 7154234 and 26989185.    4.3  Medium  2017-01-19  2016-04-25  View
18896  CVE-2016-2952  IBM BigFix Remote Control before 9.1.3 does not enable the HSTS protection mechanism, which makes it easier for remote attackers to obtain sensitive information by leveraging use of HTTP.    4.3  Medium  2017-01-19  2016-12-02  View

Page 14786 of 17672, showing 5 records out of 88360 total, starting on record 73926, ending on 73930

Actions