NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 17645 | CVE-2016-1205 | Cross-site scripting (XSS) vulnerability in the shiro8 (1) category_freearea_ addition_plugin plugin 1.0 and (2) itemdetail_freearea_ addition_plugin plugin 1.0 for EC-CUBE allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View | |
| 17901 | CVE-2016-1494 | The verify function in the RSA package for Python (Python-RSA) before 3.3 allows attackers to spoof signatures with a small public exponent via crafted signature padding, aka a BERserk attack. | 2 | 5 | Medium | 2017-01-19 | 2016-12-19 | View | |
| 18157 | CVE-2016-1809 | Disk Utility in Apple OS X before 10.11.5 uses incorrect encryption keys for disk images, which has unspecified impact and attack vectors. | 2 | 7.8 | High | 2017-01-19 | 2016-11-30 | View | |
| 18413 | CVE-2016-2116 | Memory leak in the jas_iccprof_createfrombuf function in JasPer 1.900.1 and earlier allows remote attackers to cause a denial of service (memory consumption) via a crafted ICC color profile in a JPEG 2000 image file. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-02 | View | |
| 18669 | CVE-2016-2456 | The MediaTek Wi-Fi driver in Android before 2016-05-01 on Android One devices allows attackers to gain privileges via a crafted application, aka internal bug 27275187. | 2 | 5.1 | Medium | 2017-01-19 | 2016-05-16 | View |
Page 14931 of 17672, showing 5 records out of 88360 total, starting on record 74651, ending on 74655