NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
18941  CVE-2016-3055  IBM FileNet Workplace 4.0.2 before 4.0.2.14 LA012 allows remote authenticated users to read arbitrary files or cause a denial of service (memory consumption) via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.    5.5  Medium  2017-01-19  2016-12-01  View
19197  CVE-2016-3382  The scripting engines in Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, as demonstrated by the Chakra JavaScript engine, aka "Scripting Engine Memory Corruption Vulnerability."    9.3  High  2017-01-19  2016-11-28  View
19453  CVE-2016-3670  Cross-site scripting (XSS) vulnerability in users.jsp in the Profile Search functionality in Liferay before 7.0.0 CE RC1 allows remote attackers to inject arbitrary web script or HTML via the FirstName field.    4.3  Medium  2017-01-19  2016-06-20  View
19709  CVE-2016-3978  The Web User Interface (WebUI) in FortiOS 5.0.x before 5.0.13, 5.2.x before 5.2.3, and 5.4.x before 5.4.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks or cross-site scripting (XSS) attacks via the "redirect" parameter to "login."    4.3  Medium  2017-01-19  2016-04-14  View
85245  CVE-2015-7563  Cross-site request forgery (CSRF) vulnerability in TeamPass 2.1.24 and earlier allows remote attackers to hijack the authentication of an authenticated user.    6.8  Medium  2017-04-27  2017-04-20  View

Page 15314 of 17672, showing 5 records out of 88360 total, starting on record 76566, ending on 76570

Actions