NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
20954  CVE-2016-5797  Tollgrade LightHouse SMS before 5.1 patch 3 provides different error messages for failed authentication attempts depending on whether the username exists, which allows remote attackers to enumerate account names via a series of attempts.    Medium  2017-01-19  2016-11-28  View
86490  CVE-2017-9261  In ImageMagick 7.0.5-6 Q16, the ReadMNGImage function in coders/png.c allows attackers to cause a denial of service (memory leak) via a crafted file.    4.3  Medium  2017-06-12  2017-06-05  View
21210  CVE-2016-6436  Cross-site scripting (XSS) vulnerability in HostScan Engine 3.0.08062 through 3.1.14018 in the Cisco Host Scan package, as used in ASA Web VPN, allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCuz14682.    4.3  Medium  2017-01-19  2016-11-28  View
21466  CVE-2016-6828  The tcp_check_send_head function in include/net/tcp.h in the Linux kernel before 4.7.5 does not properly maintain certain SACK state after a failed data copy, which allows local users to cause a denial of service (tcp_xmit_retransmit_queue use-after-free and system crash) via a crafted SACK option.    4.9  Medium  2017-01-19  2017-01-02  View
87002  CVE-2017-8239  In all Android releases from CAF using the Linux kernel, userspace-controlled parameters for flash initialization are not sanitized potentially leading to exposure of kernel memory.    4.3  Medium  2017-07-18  2017-07-07  View

Page 16342 of 17672, showing 5 records out of 88360 total, starting on record 81706, ending on 81710

Actions