NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
82307  CVE-2016-10213  A10 AX1030 and possibly other devices with software before 2.7.2-P8 uses random GCM nonce generations, which makes it easier for remote attackers to obtain the authentication key and spoof data by leveraging a reused nonce in a session and a "forbidden attack," a similar issue to CVE-2016-0270.          2017-02-15  2017-02-08  View
81797  CVE-2016-5951  IBM Kenexa LCMS Premier on Cloud is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.    3.5  Low  2017-02-15  2017-02-08  View
81798  CVE-2016-5952  IBM Kenexa LCMS Premier on Cloud is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database.    6.5  Medium  2017-02-15  2017-02-08  View
81809  CVE-2016-6000  IBM TRIRIGA Application Platform is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.    4.3  Medium  2017-02-15  2017-02-08  View
81816  CVE-2016-6040  IBM Jazz Foundation could allow an authenticated user to take over a previously logged in user due to session expiration not being enforced.    Medium  2017-02-15  2017-02-08  View

Page 15436 of 17672, showing 5 records out of 88360 total, starting on record 77176, ending on 77180

Actions