NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
16764  CVE-2016-0304  The Java Console in IBM Domino 8.5.x before 8.5.3 FP6 IF13 and 9.x before 9.0.1 FP6, when a certain unsupported configuration involving UNC share pathnames is used, allows remote attackers to bypass authentication and possibly execute arbitrary code via unspecified vectors, aka SPR KLYHA7MM3J. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-0920.    6.8  Medium  2017-01-19  2016-06-29  View
82294  CVE-2016-0305  IBM Connections is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit this vulnerability using a specially-crafted URL to execute script in a victim"s Web browser within the security context of the hosting Web site, once the URL is clicked. An attacker could use this vulnerability to steal the victim"s cookie-based authentication credentials.    3.5  Low  2017-02-15  2017-02-09  View
16765  CVE-2016-0306  IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.41, 8.0 before 8.0.0.13, and 8.5 before 8.5.5.10, when FIPS 140-2 is enabled, misconfigures TLS, which allows man-in-the-middle attackers to obtain sensitive information via unspecified vectors.    4.3  Medium  2017-01-19  2016-11-28  View
82295  CVE-2016-0307  IBM Connections 5.5 and earlier allows remote attackers to obtain sensitive information by reading stack traces in returned responses.    Medium  2017-02-15  2017-02-09  View
82296  CVE-2016-0308  IBM Connections 5.5 and earlier is vulnerable to possible link manipulation attack that could result in the display of inappropriate background images.    Medium  2017-02-15  2017-02-09  View

Page 15199 of 17672, showing 5 records out of 88360 total, starting on record 75991, ending on 75995

Actions