NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 17372 | CVE-2016-1000123 | Unauthenticated SQL Injection in Huge-IT Video Gallery v1.0.9 for Joomla | 2 | 7.5 | High | 2017-01-19 | 2016-12-22 | View | |
| 82908 | CVE-2016-6190 | SOGo before 2.3.12 and 3.x before 3.1.1 does not restrict access to the UID and DTSTAMP attributes, which allows remote authenticated users to obtain sensitive information about appointments with the "View the Date & Time" restriction, as demonstrated by correlating UIDs and DTSTAMPs between all users. | 2 | 4 | Medium | 2017-02-28 | 2017-02-22 | View | |
| 17628 | CVE-2016-1181 | ActionServlet.java in Apache Struts 1 1.x through 1.3.10 mishandles multithreaded access to an ActionForm instance, which allows remote attackers to execute arbitrary code or cause a denial of service (unexpected memory access) via a multipart request, a related issue to CVE-2015-0899. | 2 | 6.8 | Medium | 2017-01-19 | 2016-11-28 | View | |
| 17884 | CVE-2016-1476 | Cross-site scripting (XSS) vulnerability on Cisco IP Phone 8800 devices with software 11.0 allows remote authenticated users to inject arbitrary web script or HTML via crafted parameters, aka Bug ID CSCuz03024. | 2 | 3.5 | Low | 2017-01-19 | 2016-11-28 | View | |
| 18140 | CVE-2016-1792 | The AMD subsystem in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. | 2 | 9.3 | High | 2017-01-19 | 2016-11-30 | View |
Page 15514 of 17672, showing 5 records out of 88360 total, starting on record 77566, ending on 77570