NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
19735 | CVE-2016-4009 | Integer overflow in the ImagingResampleHorizontal function in libImaging/Resample.c in Pillow before 3.1.1 allows remote attackers to have unspecified impact via negative values of the new size, which triggers a heap-based buffer overflow. | 2 | 10 | High | 2017-01-19 | 2017-01-02 | View | |
19736 | CVE-2016-4014 | XML external entity (XXE) vulnerability in the UDDI component in SAP NetWeaver JAVA AS 7.4 allows remote attackers to cause a denial of service (system hang) via a crafted DTD in an XML request to uddi/api/replication, aka SAP Security Note 2254389. | 2 | 9 | High | 2017-01-19 | 2016-08-15 | View | |
19737 | CVE-2016-4015 | The Enqueue Server in SAP NetWeaver JAVA AS 7.1 through 7.4 allows remote attackers to cause a denial of service (process crash) via a crafted request, aka SAP Security Note 2258784. | 2 | 5 | Medium | 2017-01-19 | 2016-04-19 | View | |
19738 | CVE-2016-4016 | Cross-site scripting (XSS) vulnerability in SAP Manufacturing Integration and Intelligence (aka MII, formerly xMII) 15 allows remote attackers to inject arbitrary web script or HTML via the title parameter to webdynpro/resources/sap.com/xapps~xmii~ui~admin~navigation/NavigationApplication, aka SAP Security Note 2201295. | 2 | 4.3 | Medium | 2017-01-19 | 2016-08-15 | View | |
19739 | CVE-2016-4017 | The Data Provisioning Agent (aka DP Agent) in SAP HANA allows remote attackers to cause a denial of service (process crash) via unspecified vectors, aka SAP Security Note 2262710. | 2 | 5 | Medium | 2017-01-19 | 2016-04-20 | View |
Page 15876 of 17672, showing 5 records out of 88360 total, starting on record 79376, ending on 79380