NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
18394  CVE-2016-2090  Off-by-one vulnerability in the fgetwln function in libbsd before 0.8.2 allows attackers to have unspecified impact via unknown vectors, which trigger a heap-based buffer overflow.    7.5  High  2017-01-19  2017-01-17  View
18395  CVE-2016-2091  The dwarf_read_cie_fde_prefix function in dwarf_frame2.c in libdwarf 20151114 allows attackers to cause a denial of service (out-of-bounds read) via a crafted ELF object file.    Medium  2017-01-19  2016-03-04  View
18396  CVE-2016-2094  The HTTPS NIO Connector allows remote attackers to cause a denial of service (thread consumption) by opening a socket and not sending an SSL handshake, aka a read-timeout vulnerability.    Medium  2017-01-19  2016-05-10  View
18397  CVE-2016-2097  Directory traversal vulnerability in Action View in Ruby on Rails before 3.2.22.2 and 4.x before 4.1.14.2 allows remote attackers to read arbitrary files by leveraging an application"s unrestricted use of the render method and providing a .. (dot dot) in a pathname. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-0752.    Medium  2017-01-19  2016-12-02  View
18398  CVE-2016-2098  Action Pack in Ruby on Rails before 3.2.22.2, 4.x before 4.1.14.2, and 4.2.x before 4.2.5.2 allows remote attackers to execute arbitrary Ruby code by leveraging an application"s unrestricted use of the render method.    7.5  High  2017-01-19  2016-12-02  View

Page 15585 of 17672, showing 5 records out of 88360 total, starting on record 77921, ending on 77925

Actions