NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
20660 | CVE-2016-5390 | Foreman before 1.11.4 and 1.12.x before 1.12.1 allow remote authenticated users with the view_hosts permission containing a filter to obtain sensitive network interface information via a request to API routes beneath "hosts," as demonstrated by a GET request to api/v2/hosts/secrethost/interfaces. | 2 | 2.1 | Low | 2017-01-19 | 2016-08-22 | View | |
87216 | CVE-2016-5391 | libreswan before 3.18 allows remote attackers to cause a denial of service (NULL pointer dereference and pluto daemon restart). | 2 | 5 | Medium | 2017-06-23 | 2017-06-21 | View | |
20661 | CVE-2016-5392 | The API server in Kubernetes, as used in Red Hat OpenShift Enterprise 3.2, in a multi tenant environment allows remote authenticated users with knowledge of other project names to obtain sensitive project and user information via vectors related to the watch-cache list. | 2 | 6.8 | Medium | 2017-01-19 | 2016-08-05 | View | |
20662 | CVE-2016-5393 | In Apache Hadoop 2.6.x before 2.6.5 and 2.7.x before 2.7.3, a remote user who can authenticate with the HDFS NameNode can possibly run arbitrary commands with the same privileges as the HDFS service. | 2 | 6.5 | Medium | 2017-01-19 | 2016-12-01 | View | |
20663 | CVE-2016-5395 | Cross-site scripting (XSS) vulnerability in the create user functionality in the policy admin tool in Apache Ranger before 0.6.1 allows remote authenticated administrators to inject arbitrary web script or HTML via vectors related to policies. | 2 | 3.5 | Low | 2017-01-19 | 2016-09-27 | View |
Page 16101 of 17672, showing 5 records out of 88360 total, starting on record 80501, ending on 80505