NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
18226  CVE-2016-1902  The nextBytes function in the SecureRandom class in Symfony before 2.3.37, 2.6.x before 2.6.13, and 2.7.x before 2.7.9 does not properly generate random numbers when used with PHP 5.x without the paragonie/random_compat library and the openssl_random_pseudo_bytes function fails, which makes it easier for attackers to defeat cryptographic protection mechanisms via unspecified vectors.    Medium  2017-01-19  2016-06-03  View
18227  CVE-2016-1903  The gdImageRotateInterpolated function in ext/gd/libgd/gd_interpolation.c in PHP before 5.5.31, 5.6.x before 5.6.17, and 7.x before 7.0.2 allows remote attackers to obtain sensitive information or cause a denial of service (out-of-bounds read and application crash) via a large bgd_color argument to the imagerotate function.    6.4  Medium  2017-01-19  2016-12-07  View
18228  CVE-2016-1904  Multiple integer overflows in ext/standard/exec.c in PHP 7.x before 7.0.2 allow remote attackers to cause a denial of service or possibly have unspecified other impact via a long string to the (1) php_escape_shell_cmd or (2) php_escape_shell_arg function, leading to a heap-based buffer overflow.    7.5  High  2017-01-19  2016-12-07  View
18229  CVE-2016-1905  The API server in Kubernetes does not properly check admission control, which allows remote authenticated users to access additional resources via a crafted patched object.    Medium  2017-01-19  2016-06-15  View
18230  CVE-2016-1906  The API server in Kubernetes might allow remote attackers to gain privileges by editing a build configuration to use a restricted strategy.    10  High  2017-01-19  2016-06-15  View

Page 15550 of 17672, showing 5 records out of 88360 total, starting on record 77746, ending on 77750

Actions