NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
17114  CVE-2016-0731  The File Browser View in Apache Ambari before 2.2.1 allows remote authenticated administrators to read arbitrary files via a file: URL in the WebHDFS URL configuration.    Medium  2017-01-19  2016-05-18  View
17115  CVE-2016-0733  The Admin UI in Apache Ranger before 0.5.1 does not properly handle authentication requests that lack a password, which allows remote attackers to bypass authentication by leveraging knowledge of a valid username.    7.5  High  2017-01-19  2016-04-18  View
17116  CVE-2016-0734  The web-based administration console in Apache ActiveMQ 5.x before 5.13.2 does not send an X-Frame-Options HTTP header, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web page that contains a (1) FRAME or (2) IFRAME element.    4.3  Medium  2017-01-19  2016-12-02  View
17117  CVE-2016-0735  Apache Ranger 0.5.x before 0.5.2 allows remote authenticated users to bypass intended parent resource-level access restrictions by leveraging mishandling of a resource-level exclude policy.    6.5  Medium  2017-01-19  2016-04-19  View
17118  CVE-2016-0737  OpenStack Object Storage (Swift) before 2.4.0 does not properly close client connections, which allows remote attackers to cause a denial of service (proxy-server resource consumption) via a series of interrupted requests to a Large Object URL.    Medium  2017-01-19  2016-12-02  View

Page 15272 of 17672, showing 5 records out of 88360 total, starting on record 76356, ending on 76360

Actions