NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85325 | CVE-2016-4896 | SetsucoCMS all versions does not properly manage sessions, which allows remote attackers to disclose or alter unauthorized information via unspecified vectors. | 2 | 6.4 | Medium | 2017-05-27 | 2017-05-22 | View | |
45135 | CVE-2012-3546 | org/apache/catalina/realm/RealmBase.java in Apache Tomcat 6.x before 6.0.36 and 7.x before 7.0.30, when FORM authentication is used, allows remote attackers to bypass security-constraint checks by leveraging a previous setUserPrincipal call and then placing /j_security_check at the end of a URI. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-22 | View | |
86357 | CVE-2016-2172 | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none. | 1 | 2017-05-27 | 2017-05-22 | View | |||
45910 | CVE-2012-4534 | org/apache/tomcat/util/net/NioEndpoint.java in Apache Tomcat 6.x before 6.0.36 and 7.x before 7.0.28, when the NIO connector is used in conjunction with sendfile and HTTPS, allows remote attackers to cause a denial of service (infinite loop) by terminating the connection during the reading of a response. | 2 | 2.6 | Low | 2017-05-27 | 2017-05-22 | View | |
86126 | CVE-2017-8908 | The mark_line_tr function in gxscanc.c in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PostScript document. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-22 | View |
Page 1623 of 17672, showing 5 records out of 88360 total, starting on record 8111, ending on 8115