NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
13449  CVE-2010-1958  Cross-site scripting (XSS) vulnerability in the FileField module 5.x before 5.x-2.5 and 6.x before 6.x-3.4 for Drupal allows remote authenticated users, with create or edit permissions and "Path to File" or "URL to File" display enabled, to inject arbitrary web script or HTML via the file name (filepath parameter).    2.1  Low  2017-01-18  2010-06-22  View
18825  CVE-2016-2841  The ne2000_receive function in the NE2000 NIC emulation support (hw/net/ne2000.c) in QEMU before 2.5.1 allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) via crafted values for the PSTART and PSTOP registers, involving ring buffer control.    2.1  Low  2017-01-19  2016-11-28  View
21129  CVE-2016-6340  The kickstart file in Red Hat QuickStart Cloud Installer (QCI) forces use of MD5 passwords on deployed systems, which makes it easier for attackers to determine cleartext passwords via a brute-force attack.    2.1  Low  2017-01-19  2016-09-22  View
24201  CVE-2015-2019  IBM Tivoli Security Directory Server 6.0 before iFix 75, 6.1 before iFix 68, 6.2 before iFix 44, 6.3 before iFix 37, 6.3.1 before iFix 11, and 6.4 before iFix 2 does not prevent caching of documents retrieved in SSL sessions, which allows physically proximate attackers to obtain sensitive information by leveraging an unattended workstation.    2.1  Low  2017-01-19  2016-12-30  View
35465  CVE-2014-8399  The default configuration in systemd-shim 8 enables the Abandon debugging clause, which allows local users to cause a denial of service via unspecified vectors.    2.1  Low  2017-01-19  2014-11-03  View

Page 15706 of 17672, showing 5 records out of 88360 total, starting on record 78526, ending on 78530

Actions