NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
20970 | CVE-2016-5837 | WordPress before 4.5.3 allows remote attackers to bypass intended access restrictions and remove a category attribute from a post via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2016-11-29 | View | |
20971 | CVE-2016-5838 | WordPress before 4.5.3 allows remote attackers to bypass intended password-change restrictions by leveraging knowledge of a cookie. | 2 | 5 | Medium | 2017-01-19 | 2016-11-29 | View | |
20972 | CVE-2016-5839 | WordPress before 4.5.3 allows remote attackers to bypass the sanitize_file_name protection mechanism via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2016-11-28 | View | |
20973 | CVE-2016-5840 | hotfix_upload.cgi in Trend Micro Deep Discovery Inspector (DDI) 3.7, 3.8 SP1 (3.81), and 3.8 SP2 (3.82) allows remote administrators to execute arbitrary code via shell metacharacters in the filename parameter of the Content-Disposition header. | 2 | 9 | High | 2017-01-19 | 2016-11-28 | View | |
20974 | CVE-2016-5841 | Integer overflow in MagickCore/profile.c in ImageMagick before 7.0.2-1 allows remote attackers to cause a denial of service (segmentation fault) or possibly execute arbitrary code via vectors involving the offset variable. | 2 | 7.5 | High | 2017-01-19 | 2016-12-14 | View |
Page 16176 of 17672, showing 5 records out of 88360 total, starting on record 80876, ending on 80880