NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
82310  CVE-2016-10223  An issue was discovered in BigTree CMS before 4.2.15. The vulnerability exists due to insufficient filtration of user-supplied data in the "id" HTTP GET parameter passed to the "core/admin/adjax/dashboard/check-module-integrity.php" URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.          2017-02-15  2017-02-14  View
81799  CVE-2016-5953  IBM Sterling Order Management transmits the session identifier within the URL. When a user is unable to view a certain view due to not being allowed permissions, the website responds with an error page where the session identifier is encoded as Base64 in the URL.    4.3  Medium  2017-02-15  2017-02-15  View
82312  CVE-2016-1880  The Linux compatibility layer in the kernel in FreeBSD 9.3, 10.1, and 10.2 allows local users to read portions of kernel memory and potentially gain privilege via unspecified vectors, related to "handling of Linux futex robust lists."          2017-02-15  2017-02-15  View
81801  CVE-2016-5964  IBM Security Privileged Identity Manager Virtual Appliance version 2.0.2 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials.    Medium  2017-02-15  2017-02-13  View
82313  CVE-2016-1881  The kernel in FreeBSD 9.3, 10.1, and 10.2 allows local users to cause a denial of service (crash) or potentially gain privilege via a crafted Linux compatibility layer setgroups system call.          2017-02-15  2017-02-15  View

Page 15472 of 17672, showing 5 records out of 88360 total, starting on record 77356, ending on 77360

Actions