NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
18390  CVE-2016-2086  Node.js 0.10.x before 0.10.42, 0.12.x before 0.12.10, 4.x before 4.3.0, and 5.x before 5.6.0 allow remote attackers to conduct HTTP request smuggling attacks via a crafted Content-Length HTTP header.    Medium  2017-01-19  2016-04-11  View
83926  CVE-2016-10129  The Git Smart Protocol support in libgit2 before 0.24.6 and 0.25.x before 0.25.1 allows remote attackers to cause a denial of service (NULL pointer dereference) via an empty packet line.    Medium  2017-03-29  2017-03-27  View
18902  CVE-2016-2958  IBM Connections 4.0 through CR4, 4.5 through CR5, and 5.0 before CR4 allows remote authenticated users to obtain sensitive information by reading an "archaic" e-mail address in a response.    Medium  2017-01-19  2016-11-30  View
84694  CVE-2017-5650  In Apache Tomcat 9.0.0.M1 to 9.0.0.M18 and 8.5.0 to 8.5.12, the handling of an HTTP/2 GOAWAY frame for a connection did not close streams associated with that connection that were currently waiting for a WINDOW_UPDATE before allowing the application to write more data. These waiting streams each consumed a thread. A malicious client could therefore construct a series of HTTP/2 requests that would consume all available processing threads.    Medium  2017-07-18  2017-07-10  View
85206  CVE-2016-7530  The quantum handling code in ImageMagick allows remote attackers to cause a denial of service (divide-by-zero error or out-of-bounds write) via a crafted file.    4.3  Medium  2017-04-27  2017-04-25  View

Page 16193 of 17672, showing 5 records out of 88360 total, starting on record 80961, ending on 80965

Actions