NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
17899 | CVE-2016-1492 | The Wifi hotspot in Lenovo SHAREit before 3.5.48_ww for Android, when configured to receive files, does not require a password, which makes it easier for remote attackers to obtain access by leveraging a position within the WLAN coverage area. | 2 | 2.9 | Low | 2017-01-19 | 2016-12-22 | View | |
83435 | CVE-2017-6575 | A SQL injection issue is exploitable, with WordPress admin access, in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects ./inc/lists/edit_member.php with the GET Parameter: member_id. | 2 | 6.5 | Medium | 2017-03-18 | 2017-03-13 | View | |
18155 | CVE-2016-1807 | Race condition in the Disk Images subsystem in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1 allows local users to obtain sensitive information from kernel memory via unspecified vectors. | 2 | 2.6 | Low | 2017-01-19 | 2016-11-30 | View | |
83691 | CVE-2017-1146 | IBM Content Navigator 2.0.3 and 3.0.0 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM Reference #: 1999736. | 2 | 3.5 | Low | 2017-03-29 | 2017-03-23 | View | |
18411 | CVE-2016-2114 | The SMB1 protocol implementation in Samba 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 does not recognize the "server signing = mandatory" setting, which allows man-in-the-middle attackers to spoof SMB servers by modifying the client-server data stream. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-30 | View |
Page 15922 of 17672, showing 5 records out of 88360 total, starting on record 79606, ending on 79610