NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
86351  CVE-2016-0780  It was discovered that cf-release v231 and lower, Pivotal Cloud Foundry Elastic Runtime 1.5.x versions prior to 1.5.17 and Pivotal Cloud Foundry Elastic Runtime 1.6.x versions prior to 1.6.18 do not properly enforce disk quotas in certain cases. An attacker could use an improper disk quota value to bypass enforcement and consume all the disk on DEAs/CELLs causing a potential denial of service for other applications.    Medium  2017-06-12  2017-06-07  View
86352  CVE-2016-0781  The UAA OAuth approval pages in Cloud Foundry v208 to v231, Login-server v1.6 to v1.14, UAA v2.0.0 to v2.7.4.1, UAA v3.0.0 to v3.2.0, UAA-Release v2 to v7 and Pivotal Elastic Runtime 1.6.x versions prior to 1.6.20 are vulnerable to an XSS attack by specifying malicious java script content in either the OAuth scopes (SCIM groups) or SCIM group descriptions.    4.3  Medium  2017-06-12  2017-06-07  View
86353  CVE-2016-10073  The from method in library/core/class.email.php in Vanilla Forums before 2.3.1 allows remote attackers to spoof the email domain in sent messages and potentially obtain sensitive information via a crafted HTTP Host header, as demonstrated by a password reset request.    Medium  2017-06-12  2017-06-08  View
86354  CVE-2016-10375  Yodl before 3.07.01 has a Buffer Over-read in the queue_push function in queue/queuepush.c.    7.5  High  2017-06-12  2017-06-06  View
86355  CVE-2016-1876  The backend service process in Lenovo Solution Center (aka LSC) before 3.3.0002 allows local users to gain SYSTEM privileges via unspecified vectors.    7.2  High  2017-06-12  2017-06-07  View

Page 17271 of 17672, showing 5 records out of 88360 total, starting on record 86351, ending on 86355

Actions