NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
20087 | CVE-2016-4431 | Apache Struts 2 2.3.20 through 2.3.28.1 allows remote attackers to bypass intended access restrictions and conduct redirection attacks by leveraging a default method. | 2 | 5 | Medium | 2017-01-19 | 2016-11-28 | View | |
20088 | CVE-2016-4432 | The AMQP 0-8, 0-9, 0-91, and 0-10 connection handling in Apache Qpid Java before 6.0.3 might allow remote attackers to bypass authentication and consequently perform actions via vectors related to connection state logging. | 2 | 5 | Medium | 2017-01-19 | 2016-11-29 | View | |
20089 | CVE-2016-4433 | Apache Struts 2 2.3.20 through 2.3.28.1 allows remote attackers to bypass intended access restrictions and conduct redirection attacks via a crafted request. | 2 | 5 | Medium | 2017-01-19 | 2016-11-28 | View | |
86359 | CVE-2016-4435 | An endpoint of the Agent running on the BOSH Director VM with stemcell versions prior to 3232.6 and 3146.13 may allow unauthenticated clients to read or write blobs or cause a denial of service attack on the Director VM. This vulnerability requires that the unauthenticated clients guess or find a URL matching an existing GUID. | 2 | 6.8 | Medium | 2017-06-12 | 2017-06-08 | View | |
20090 | CVE-2016-4436 | Apache Struts 2 before 2.3.29 and 2.5.x before 2.5.1 allow attackers to have unspecified impact via vectors related to improper action name clean up. | 2 | 7.5 | High | 2017-01-19 | 2016-10-21 | View |
Page 15950 of 17672, showing 5 records out of 88360 total, starting on record 79746, ending on 79750