NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
19488 | CVE-2016-3720 | XML external entity (XXE) vulnerability in XmlMapper in the Data format extension for Jackson (aka jackson-dataformat-xml) allows attackers to have unspecified impact via unknown vectors. | 2 | 7.5 | High | 2017-01-19 | 2016-08-03 | View | |
19489 | CVE-2016-3721 | Jenkins before 2.3 and LTS before 1.651.2 might allow remote authenticated users to inject arbitrary build parameters into the build environment via environment variables. | 2 | 4 | Medium | 2017-01-19 | 2016-07-14 | View | |
19490 | CVE-2016-3722 | Jenkins before 2.3 and LTS before 1.651.2 allow remote authenticated users with multiple accounts to cause a denial of service (unable to login) by editing the "full name." | 2 | 4 | Medium | 2017-01-19 | 2016-07-14 | View | |
19491 | CVE-2016-3723 | Jenkins before 2.3 and LTS before 1.651.2 allow remote authenticated users with read access to obtain sensitive plugin installation information by leveraging missing permissions checks in unspecified XML/JSON API endpoints. | 2 | 4 | Medium | 2017-01-19 | 2016-07-14 | View | |
19492 | CVE-2016-3724 | Jenkins before 2.3 and LTS before 1.651.2 allow remote authenticated users with extended read access to obtain sensitive password information by reading a job configuration. | 2 | 4 | Medium | 2017-01-19 | 2016-07-14 | View |
Page 15825 of 17672, showing 5 records out of 88360 total, starting on record 79121, ending on 79125