NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 17127 | CVE-2016-0751 | actionpack/lib/action_dispatch/http/mime_type.rb in Action Pack in Ruby on Rails before 3.2.22.1, 4.0.x and 4.1.x before 4.1.14.1, 4.2.x before 4.2.5.1, and 5.x before 5.0.0.beta1.1 does not properly restrict use of the MIME type cache, which allows remote attackers to cause a denial of service (memory consumption) via a crafted HTTP Accept header. | 2 | 5 | Medium | 2017-01-19 | 2016-12-05 | View | |
| 17383 | CVE-2016-1000134 | Reflected XSS in wordpress plugin hdw-tube v1.2 | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-22 | View | |
| 17639 | CVE-2016-1196 | Cybozu Garoon 3.x and 4.x before 4.2.1 allows remote authenticated users to bypass intended access restrictions and obtain sensitive Address Book information via an API call, a different vulnerability than CVE-2015-7776. | 2 | 4 | Medium | 2017-01-19 | 2016-06-21 | View | |
| 17895 | CVE-2016-1488 | Cross-site scripting (XSS) vulnerability in the login form in the integrated web server on Siemens OZW OZW672 devices before 6.00 and OZW772 devices before 6.00 allows remote attackers to inject arbitrary web script or HTML via a crafted URL. | 2 | 4.3 | Medium | 2017-01-19 | 2016-03-04 | View | |
| 18151 | CVE-2016-1803 | CoreCapture in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (NULL pointer dereference) via a crafted app. | 2 | 9.3 | High | 2017-01-19 | 2016-11-30 | View |
Page 14813 of 17672, showing 5 records out of 88360 total, starting on record 74061, ending on 74065