NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
81788  CVE-2016-5937  IBM Kenexa LCMS Premier on Cloud is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.    6.8  Medium  2017-02-15  2017-02-08  View
82300  CVE-2016-10089  Nagios 4.2.4 and earlier allows local users to gain root privileges via a hard link attack on the Nagios init script file, related to CVE-2016-8641.          2017-02-15  2017-02-15  View
82304  CVE-2016-10198  The gst_aac_parse_sink_setcaps function in gst/audioparsers/gstaacparse.c in gst-plugins-good in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (invalid memory read and crash) via a crafted audio file.    4.3  Medium  2017-02-15  2017-02-13  View
82305  CVE-2016-10199  The qtdemux_tag_add_str_full function in gst/isomp4/qtdemux.c in gst-plugins-good in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted tag value.    Medium  2017-02-15  2017-02-13  View
42113  CVE-2013-7397  Async Http Client (aka AHC or async-http-client) before 1.9.0 skips X.509 certificate verification unless both a keyStore location and a trustStore location are explicitly set, which allows man-in-the-middle attackers to spoof HTTPS servers by presenting an arbitrary certificate during use of a typical AHC configuration, as demonstrated by a configuration that does not send client certificates.    4.3  Medium  2017-02-15  2017-02-09  View

Page 15469 of 17672, showing 5 records out of 88360 total, starting on record 77341, ending on 77345

Actions