NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
81791  CVE-2016-5940  IBM Kenexa LMS on Cloud is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.    3.5  Low  2017-02-08  2017-02-05  View
82047  CVE-2016-7798  The openssl gem for Ruby uses the same initialization vector (IV) in GCM Mode (aes-*-gcm) when the IV is set before the key, which makes it easier for context-dependent attackers to bypass the encryption protection mechanism.    Medium  2017-02-08  2017-02-07  View
81792  CVE-2016-5941  IBM Kenexa LMS on Cloud could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing dot dot sequences (/../) to view arbitrary files on the system.    3.5  Low  2017-02-08  2017-02-05  View
82048  CVE-2016-7922  The AH parser in tcpdump before 4.9.0 has a buffer overflow in print-ah.c:ah_print().    7.5  High  2017-02-08  2017-02-01  View
81793  CVE-2016-5942  IBM Kenexa LMS on Cloud is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.    3.5  Low  2017-02-08  2017-02-05  View

Page 15400 of 17672, showing 5 records out of 88360 total, starting on record 76996, ending on 77000

Actions