NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85290 | CVE-2016-2566 | Samsung SecEmailSync on SM-G920F build G920FXXU2COH2 (Galaxy S6) devices has SQL injection, aka SVE-2015-5081. | 2 | 7.5 | High | 2017-04-27 | 2017-04-21 | View | |
85293 | CVE-2016-3036 | IBM Cognos TM1 10.1 and 10.2 is vulnerable to a denial of service, caused by a stack-based buffer overflow when parsing packets. A remote attacker could exploit this vulnerability to cause a denial of service. IBM X-Force ID: 114612. | 2 | 5 | Medium | 2017-04-27 | 2017-04-21 | View | |
85294 | CVE-2016-3037 | IBM Cognos TM1 10.1 and 10.2 provides a service to return the victim"s password with a valid session key. An authenticated attacker with user interaction could obtain this sensitive information. IBM X-Force ID: 114613. | 2 | 3.5 | Low | 2017-04-27 | 2017-04-21 | View | |
85295 | CVE-2016-3038 | IBM Cognos TM1 10.1 and 10.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 114614. | 2 | 3.5 | Low | 2017-04-27 | 2017-04-21 | View | |
85316 | CVE-2016-4875 | Multiple cross-site scripting (XSS) vulnerabilities in the IVYWE (1) Assist plugin before 1.1.2.test20160906, (2) dataBox plugin before 0.0.0.20160906, and (3) userBox plugin before 0.0.0.20160906 for Geeklog allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-04-27 | 2017-04-21 | View |
Page 15877 of 17672, showing 5 records out of 88360 total, starting on record 79381, ending on 79385