NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
82325 | CVE-2016-3102 | The Script Security plugin before 1.18.1 in Jenkins might allow remote attackers to bypass a Groovy sandbox protection mechanism via a plugin that performs (1) direct field access or (2) get/set array operations. | 2 | 7.5 | High | 2017-02-28 | 2017-02-28 | View | |
85296 | CVE-2016-3104 | mongod in MongoDB 2.6, when using 2.4-style users, and 2.4 allow remote attackers to cause a denial of service (memory consumption and process termination) by leveraging in-memory database representation when authenticating against a non-existent database. | 2 | 5 | Medium | 2017-04-27 | 2017-04-22 | View | |
18971 | CVE-2016-3105 | The convert extension in Mercurial before 3.8 might allow context-dependent attackers to execute arbitrary code via a crafted git repository name. | 2 | 6.8 | Medium | 2017-01-19 | 2016-11-30 | View | |
85297 | CVE-2016-3106 | Pulp before 2.8.3 creates a temporary directory during CA key generation in an insecure manner. | 2 | 5 | Medium | 2017-04-27 | 2017-04-26 | View | |
86799 | CVE-2016-3107 | The Node certificate in Pulp before 2.8.3 contains the private key, and is stored in a world-readable file in the "/etc/pki/pulp/nodes/" directory, which allows local users to gain access to sensitive data. | 2 | 2.1 | Low | 2017-06-18 | 2017-06-14 | View |
Page 15717 of 17672, showing 5 records out of 88360 total, starting on record 78581, ending on 78585