NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
85325  CVE-2016-4896  SetsucoCMS all versions does not properly manage sessions, which allows remote attackers to disclose or alter unauthorized information via unspecified vectors.    6.4  Medium  2017-05-27  2017-05-22  View
45135  CVE-2012-3546  org/apache/catalina/realm/RealmBase.java in Apache Tomcat 6.x before 6.0.36 and 7.x before 7.0.30, when FORM authentication is used, allows remote attackers to bypass security-constraint checks by leveraging a previous setUserPrincipal call and then placing /j_security_check at the end of a URI.    4.3  Medium  2017-05-27  2017-05-22  View
86357  CVE-2016-2172  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.        2017-05-27  2017-05-22  View
45910  CVE-2012-4534  org/apache/tomcat/util/net/NioEndpoint.java in Apache Tomcat 6.x before 6.0.36 and 7.x before 7.0.28, when the NIO connector is used in conjunction with sendfile and HTTPS, allows remote attackers to cause a denial of service (infinite loop) by terminating the connection during the reading of a response.    2.6  Low  2017-05-27  2017-05-22  View
86126  CVE-2017-8908  The mark_line_tr function in gxscanc.c in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PostScript document.    4.3  Medium  2017-05-27  2017-05-22  View

Page 1623 of 17672, showing 5 records out of 88360 total, starting on record 8111, ending on 8115

Actions