NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
21985  CVE-2016-7981  Cross-site scripting (XSS) vulnerability in valider_xml.php in SPIP 3.1.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the var_url parameter in a valider_xml action.    4.3  Medium  2017-01-30  2017-01-23  View
87521  CVE-2017-0692  A denial of service vulnerability in the Android media framework. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-36725407.    4.3  Medium  2017-07-18  2017-07-11  View
22241  CVE-2016-8904  SQL injection vulnerability in the "Site Browser > Containers pages" screen in dotCMS before 3.3.1 allows remote authenticated attackers to execute arbitrary SQL commands via the orderby parameter.    6.5  Medium  2017-01-19  2016-11-29  View
87777  CVE-2017-11104  Knot DNS before 2.4.5 and 2.5.x before 2.5.2 contains a flaw within the TSIG protocol implementation that would allow an attacker with a valid key name and algorithm to bypass TSIG authentication if no additional ACL restrictions are set, because of an improper TSIG validity period check.    4.3  Medium  2017-07-18  2017-07-16  View
22497  CVE-2016-9867  An issue was discovered in EMC ScaleIO versions before 2.0.1.1. A low-privileged local attacker may be able to modify the kernel memory in the SCINI driver and may achieve code execution to escalate privileges to root on ScaleIO Data Client (SDC) servers.    4.6  Medium  2017-01-19  2017-01-10  View

Page 16586 of 17672, showing 5 records out of 88360 total, starting on record 82926, ending on 82930

Actions