NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
18927  CVE-2016-3008  Cross-site scripting (XSS) vulnerability in the Web UI in IBM Connections 5.0 before CR4 and 5.5 before CR1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2016-2954 and CVE-2016-2956.    3.5  Low  2017-01-19  2016-11-28  View
19183  CVE-2016-3367  StringBuilder in Microsoft Silverlight 5 before 5.1.50709.0 does not properly allocate memory for string-insert and string-append operations, which allows remote attackers to execute arbitrary code via a crafted web site, aka "Microsoft Silverlight Memory Corruption Vulnerability."    9.3  High  2017-01-19  2016-11-28  View
19439  CVE-2016-3647  Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6 MP5 allows remote authenticated users to conduct server-side request forgery (SSRF) attacks, and trigger network traffic to arbitrary intranet hosts, via a crafted request.    Medium  2017-01-19  2016-07-01  View
19695  CVE-2016-3959  The Verify function in crypto/dsa/dsa.go in Go before 1.5.4 and 1.6.x before 1.6.1 does not properly check parameters passed to the big integer library, which might allow remote attackers to cause a denial of service (infinite loop) via a crafted public key to a program that uses HTTPS client certificates or SSH server libraries.    Medium  2017-01-19  2016-05-25  View
85231  CVE-2013-6662  Google Chrome caches TLS sessions before certificate validation occurs.    4.3  Medium  2017-04-27  2017-04-20  View

Page 16671 of 17672, showing 5 records out of 88360 total, starting on record 83351, ending on 83355

Actions