NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
17136  CVE-2016-0763  The setGlobalContext method in org/apache/naming/factory/ResourceLinkFactory.java in Apache Tomcat 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M3 does not consider whether ResourceLinkFactory.setGlobalContext callers are authorized, which allows remote authenticated users to bypass intended SecurityManager restrictions and read or write to arbitrary application data, or cause a denial of service (application disruption), via a web application that sets a crafted global context.    6.5  Medium  2017-01-19  2016-12-05  View
82672  CVE-2016-4493  The demangle_template_value_parm and do_hpacc_template_literal functions in cplus-dem.c in libiberty allow remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted binary.    4.3  Medium  2017-02-28  2017-02-27  View
17392  CVE-2016-1000143  Reflected XSS in wordpress plugin photoxhibit v2.1.8    4.3  Medium  2017-01-19  2016-11-28  View
82928  CVE-2017-0007  Device Guard in Microsoft Windows 10 Gold, 1511, 1607, and Windows Server 2016 allows remote attackers to modify PowerShell script without invalidating associated signatures, aka PowerShell Security Feature Bypass Vulnerability.    2.1  Low  2017-07-18  2017-07-11  View
17648  CVE-2016-1208  The server in Apple FileMaker before 14.0.4 on OS X allows remote attackers to read PHP source code via unspecified vectors.    Medium  2017-01-19  2016-05-19  View

Page 16611 of 17672, showing 5 records out of 88360 total, starting on record 83051, ending on 83055

Actions