NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
17128 | CVE-2016-0752 | Directory traversal vulnerability in Action View in Ruby on Rails before 3.2.22.1, 4.0.x and 4.1.x before 4.1.14.1, 4.2.x before 4.2.5.1, and 5.x before 5.0.0.beta1.1 allows remote attackers to read arbitrary files by leveraging an application"s unrestricted use of the render method and providing a .. (dot dot) in a pathname. | 2 | 5 | Medium | 2017-01-19 | 2016-12-05 | View | |
82664 | CVE-2016-4042 | Plone 3.3 through 5.1a1 allows remote attackers to obtain information about the ID of sensitive content via unspecified vectors. | 2 | 5 | Medium | 2017-02-28 | 2017-02-27 | View | |
17384 | CVE-2016-1000135 | Reflected XSS in wordpress plugin hdw-tube v1.2 | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-22 | View | |
82920 | CVE-2016-7511 | Integer overflow in the dwarf_die_deliv.c in libdwarf 20160613 allows remote attackers to cause a denial of service (crash) via a crafted file. | 2 | 4.3 | Medium | 2017-02-28 | 2017-02-22 | View | |
17640 | CVE-2016-1197 | Cross-site scripting (XSS) vulnerability in Cybozu Garoon 4.x before 4.2.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2015-7775. | 2 | 4.3 | Medium | 2017-01-19 | 2016-06-21 | View |
Page 16067 of 17672, showing 5 records out of 88360 total, starting on record 80331, ending on 80335