NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
82333  CVE-2016-4988  Cross-site scripting (XSS) vulnerability in the Build Failure Analyzer plugin before 1.16.0 in Jenkins allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter.    4.3  Medium  2017-02-15  2017-02-13  View
81827  CVE-2016-6068  IBM UrbanCode Deploy could allow an authenticated user with access to the REST endpoints to access API and CLI getResource secured role properties.    Medium  2017-02-15  2017-02-13  View
82351  CVE-2016-5902  IBM Maximo Asset Management is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.    4.3  Medium  2017-02-15  2017-02-13  View
81841  CVE-2016-6104  IBM Tivoli Key Lifecycle Manager 2.5, and 2.6 could allow a remote attacker to upload arbitrary files, caused by the improper validation of file extensions, which could allow the attacker to execute arbitrary code on the vulnerable system.    6.5  Medium  2017-02-15  2017-02-13  View
81857  CVE-2016-6199  ObjectSocketWrapper.java in Gradle 2.12 allows remote attackers to execute arbitrary code via a crafted serialized object.    7.5  High  2017-02-15  2017-02-13  View

Page 15496 of 17672, showing 5 records out of 88360 total, starting on record 77476, ending on 77480

Actions