NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
20005  CVE-2016-4307  A denial of service vulnerability exists in the IOCTL handling functionality of Kaspersky Internet Security KL1 driver. A specially crafted IOCTL signal can cause an access violation in KL1 kernel driver resulting in local system denial of service. An attacker can run a program from user-mode to trigger this vulnerability.    2.1  Low  2017-01-19  2017-01-10  View
17446  CVE-2016-10097  XML External Entity (XXE) Vulnerability in /SSOPOST/metaAlias/%realm%/idpv2 in OpenAM - Access Management 10.1.0 allows remote attackers to read arbitrary files via the SAMLRequest parameter.    Medium  2017-01-19  2017-01-10  View
20008  CVE-2016-4323  A directory traversal exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent from the server could potentially result in an overwrite of files. A malicious server or someone with access to the network traffic can provide an invalid filename for a splash image triggering the vulnerability.    5.8  Medium  2017-01-19  2017-01-10  View
22312  CVE-2016-9189  Pillow before 3.3.2 allows context-dependent attackers to obtain sensitive information by using the "crafted image file" approach, related to an "Integer Overflow" issue affecting the Image.core.map_buffer in map.c component.    4.3  Medium  2017-01-19  2017-01-10  View
22313  CVE-2016-9190  Pillow before 3.3.2 allows context-dependent attackers to execute arbitrary code by using the "crafted image file" approach, related to an "Insecure Sign Extension" issue affecting the ImagingNew in Storage.c component.    6.8  Medium  2017-01-19  2017-01-10  View

Page 15203 of 17672, showing 5 records out of 88360 total, starting on record 76011, ending on 76015

Actions