NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
22390 | CVE-2016-9444 | named in ISC BIND 9.x before 9.9.9-P5, 9.10.x before 9.10.4-P5, and 9.11.x before 9.11.0-P2 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted DS resource record in an answer. | 2 | 5 | Medium | 2017-01-19 | 2017-01-17 | View | |
82118 | CVE-2016-9448 | The TIFFFetchNormalTag function in LibTiff 4.0.6 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) by setting the tags TIFF_SETGET_C16ASCII or TIFF_SETGET_C32_ASCII to values that access 0-byte arrays. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-9297. | 2 | 5 | Medium | 2017-02-08 | 2017-02-07 | View | |
22391 | CVE-2016-9449 | The taxonomy module in Drupal 7.x before 7.52 and 8.x before 8.2.3 might allow remote authenticated users to obtain sensitive information about taxonomy terms by leveraging inconsistent naming of access query tags. | 2 | 4 | Medium | 2017-01-19 | 2017-01-06 | View | |
22392 | CVE-2016-9450 | The user password reset form in Drupal 8.x before 8.2.3 allows remote attackers to conduct cache poisoning attacks by leveraging failure to specify a correct cache context. | 2 | 5 | Medium | 2017-01-19 | 2016-11-29 | View | |
22393 | CVE-2016-9451 | Confirmation forms in Drupal 7.x before 7.52 make it easier for remote authenticated users to conduct open redirect attacks via unspecified vectors. | 2 | 4.9 | Medium | 2017-01-19 | 2017-01-06 | View |
Page 16630 of 17672, showing 5 records out of 88360 total, starting on record 83146, ending on 83150