NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
17136 | CVE-2016-0763 | The setGlobalContext method in org/apache/naming/factory/ResourceLinkFactory.java in Apache Tomcat 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M3 does not consider whether ResourceLinkFactory.setGlobalContext callers are authorized, which allows remote authenticated users to bypass intended SecurityManager restrictions and read or write to arbitrary application data, or cause a denial of service (application disruption), via a web application that sets a crafted global context. | 2 | 6.5 | Medium | 2017-01-19 | 2016-12-05 | View | |
82672 | CVE-2016-4493 | The demangle_template_value_parm and do_hpacc_template_literal functions in cplus-dem.c in libiberty allow remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted binary. | 2 | 4.3 | Medium | 2017-02-28 | 2017-02-27 | View | |
17392 | CVE-2016-1000143 | Reflected XSS in wordpress plugin photoxhibit v2.1.8 | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View | |
82928 | CVE-2017-0007 | Device Guard in Microsoft Windows 10 Gold, 1511, 1607, and Windows Server 2016 allows remote attackers to modify PowerShell script without invalidating associated signatures, aka PowerShell Security Feature Bypass Vulnerability. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-11 | View | |
17648 | CVE-2016-1208 | The server in Apple FileMaker before 14.0.4 on OS X allows remote attackers to read PHP source code via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2016-05-19 | View |
Page 16611 of 17672, showing 5 records out of 88360 total, starting on record 83051, ending on 83055