NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
17892 | CVE-2016-1484 | Cisco WebEx Meetings Server 2.6 allows remote attackers to bypass intended access restrictions and obtain sensitive application information via unspecified vectors, aka Bug ID CSCuy92724. | 2 | 5 | Medium | 2017-01-19 | 2016-11-28 | View | |
83428 | CVE-2017-6561 | XSS in Agora-Project 3.2.2 exists with an index.php?ctrl=object&action=[XSS] attack. | 2 | 4.3 | Medium | 2017-03-18 | 2017-03-17 | View | |
18148 | CVE-2016-1800 | Captive Network Assistant in Apple OS X before 10.11.5 mishandles a custom URL scheme, which allows user-assisted remote attackers to execute arbitrary code via unspecified vectors. | 2 | 9.3 | High | 2017-01-19 | 2016-11-30 | View | |
83684 | CVE-2017-0881 | An error in the implementation of an autosubscribe feature in the check_stream_exists route of the Zulip group chat application server before 1.4.3 allowed an authenticated user to subscribe to a private stream that should have required an invitation from an existing member to join. The issue affects all previously released versions of the Zulip server. | 2 | 4 | Medium | 2017-04-27 | 2017-04-03 | View | |
18404 | CVE-2016-2107 | The AES-NI implementation in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h does not consider memory allocation during a certain padding check, which allows remote attackers to obtain sensitive cleartext information via a padding-oracle attack against an AES CBC session. NOTE: this vulnerability exists because of an incorrect fix for CVE-2013-0169. | 2 | 2.6 | Low | 2017-06-12 | 2017-06-08 | View |
Page 15797 of 17672, showing 5 records out of 88360 total, starting on record 78981, ending on 78985