NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
20100  CVE-2016-4450  os/unix/ngx_files.c in nginx before 1.10.1 and 1.11.x before 1.11.1 allows remote attackers to cause a denial of service (NULL pointer dereference and worker process crash) via a crafted request, involving writing a client request body to a temporary file.    Medium  2017-01-19  2016-11-28  View
20101  CVE-2016-4451  The (1) Organization and (2) Locations APIs in Foreman before 1.11.3 and 1.12.x before 1.12.0-RC1 allow remote authenticated users with unlimited filters to bypass organization and location restrictions and read or modify data for an arbitrary organization by leveraging knowledge of the id of that organization.    Medium  2017-01-19  2016-08-22  View
20102  CVE-2016-4453  The vmsvga_fifo_run function in hw/display/vmware_vga.c in QEMU allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) via a VGA command.    4.6  Medium  2017-01-19  2016-11-28  View
20103  CVE-2016-4454  The vmsvga_fifo_read_raw function in hw/display/vmware_vga.c in QEMU allows local guest OS administrators to obtain sensitive host memory information or cause a denial of service (QEMU process crash) by changing FIFO registers and issuing a VGA command, which triggers an out-of-bounds read.    3.2  Low  2017-01-19  2016-11-28  View
85303  CVE-2016-4455  The Subscription Manager package (aka subscription-manager) before 1.17.7-1 for Candlepin uses weak permissions (755) for subscription-manager cache directories, which allows local users to obtain sensitive information by reading files in the directories.    2.1  Low  2017-04-27  2017-04-25  View

Page 15953 of 17672, showing 5 records out of 88360 total, starting on record 79761, ending on 79765

Actions