NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85181 | CVE-2016-6338 | ovirt-engine-webadmin, as used in Red Hat Enterprise Virtualization Manager (aka RHEV-M) for Servers and RHEV-M 4.0, allows physically proximate attackers to bypass a webadmin session timeout restriction via vectors related to UI selections, which trigger repeating queries. | 2 | 4.6 | Medium | 2017-04-27 | 2017-04-25 | View | |
85182 | CVE-2016-6341 | oVirt Engine before 4.0.3 does not include DWH_DB_PASSWORD in the list of keys to hide in log files, which allows local users to obtain sensitive password information by reading engine log files. | 2 | 2.1 | Low | 2017-04-27 | 2017-04-25 | View | |
85183 | CVE-2016-6347 | Cross-site scripting (XSS) vulnerability in the default exception handler in RESTEasy allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-04-27 | 2017-04-25 | View | |
84928 | CVE-2017-7696 | SAP AS JAVA SSO Authentication Library 2.0 through 3.0 allow remote attackers to cause a denial of service (memory consumption) via large values in the width and height parameters to otp_logon_ui_resources/qr, aka SAP Security Note 2389042. | 2 | 5 | Medium | 2017-04-27 | 2017-04-25 | View | |
85191 | CVE-2016-7513 | Off-by-one error in magick/cache.c in ImageMagick allows remote attackers to cause a denial of service (segmentation fault) via unspecified vectors. | 2 | 4.3 | Medium | 2017-04-27 | 2017-04-25 | View |
Page 15910 of 17672, showing 5 records out of 88360 total, starting on record 79546, ending on 79550