NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83998  CVE-2016-9168  A missing X-Frame-Options header in the NDS Utility Monitor in NDSD in Novell eDirectory before 9.0.2 could be used by remote attackers for clickjacking.    4.3  Medium  2017-03-29  2017-03-27  View
16671  CVE-2016-0164  Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."    7.6  High  2017-03-29  2017-03-23  View
83743  CVE-2017-5673  In the Kunena extension 5.0.2 through 5.0.4 for Joomla!, the forum message subject (aka topic subject) accepts JavaScript, leading to XSS. Six files are affected: crypsis/layouts/message/item/default.php, crypsis/layouts/message/item/top/default.php, crypsis/layouts/message/item/bottom/default.php, crypsisb3/layouts/message/item/default.php, crypsisb3/layouts/message/item/top/default.php, and crypsisb3/layouts/message/item/bottom/default.php. This is fixed in 5.0.5.    4.3  Medium  2017-03-29  2017-03-28  View
83999  CVE-2016-9169  A reflected XSS vulnerability exists in the web console of the Document Viewer Agent in Novell GroupWise before 2014 R2 Support Pack 1 Hot Patch 2 that may enable a remote attacker to execute JavaScript in the context of a valid user"s browser session by getting the user to click on a specially crafted link. This could lead to session compromise or other browser-based attacks.    4.3  Medium  2017-03-29  2017-03-24  View
84000  CVE-2016-9243  HKDF in cryptography before 1.5.2 returns an empty byte-string if used with a length less than algorithm.digest_size.          2017-03-29  2017-03-27  View

Page 15725 of 17672, showing 5 records out of 88360 total, starting on record 78621, ending on 78625

Actions