NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
22496  CVE-2016-9866  An issue was discovered in phpMyAdmin. When the arg_separator is different from its default & value, the CSRF token was not properly stripped from the return URL of the preference import action. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.    6.8  Medium  2017-01-19  2016-12-23  View
88032  CVE-2017-6704  A vulnerability in the web application in the Cisco Prime Collaboration Provisioning tool could allow an authenticated, remote attacker to perform arbitrary file downloads that could allow the attacker to read files from the underlying filesystem. More Information: CSCvc90335. Known Affected Releases: 12.1.    Medium  2017-07-18  2017-07-07  View
22752  CVE-2015-0266  The Policy Admin Tool in Apache Ranger before 0.5.0 allows remote authenticated users to bypass intended access restrictions via direct access to module URLs.    6.5  Medium  2017-01-19  2016-04-13  View
88288  CVE-2017-9926  In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted file, related to a Read Access Violation starting at image00000000_00400000+0x000000000001b596.    6.8  Medium  2017-07-18  2017-07-10  View
23008  CVE-2015-0534  EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.8 and 4.1.x before 4.1.3, RSA BSAFE Crypto-J before 6.2, RSA BSAFE SSL-J before 6.2, and RSA BSAFE SSL-C 2.8.9 and earlier do not enforce certain constraints on certificate data, which allows remote attackers to defeat a fingerprint-based certificate-blacklist protection mechanism by including crafted data within a certificate"s unsigned portion, a similar issue to CVE-2014-8275.    Medium  2017-01-19  2016-11-28  View

Page 16549 of 17672, showing 5 records out of 88360 total, starting on record 82741, ending on 82745

Actions