NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
19703 | CVE-2016-3972 | Directory traversal vulnerability in the dotTailLogServlet in dotCMS before 3.5.1 allows remote authenticated administrators to read arbitrary files via a .. (dot dot) in the fileName parameter. | 2 | 4 | Medium | 2017-01-19 | 2016-04-19 | View | |
85239 | CVE-2015-2947 | KanColleViewer versions 3.8.1 and earlier operates as an open proxy which allows remote attackers to trigger outbound network traffic. | 2 | 6.4 | Medium | 2017-04-27 | 2017-04-25 | View | |
20215 | CVE-2016-4602 | QuickTime in Apple OS X before 10.11.6 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted FlashPix bitmap image, a different vulnerability than CVE-2016-4596, CVE-2016-4597, and CVE-2016-4600. | 2 | 6.8 | Medium | 2017-01-19 | 2016-11-28 | View | |
20471 | CVE-2016-5132 | The Service Workers subsystem in Google Chrome before 52.0.2743.82 does not properly implement the Secure Contexts specification during decisions about whether to control a subframe, which allows remote attackers to bypass the Same Origin Policy via an https IFRAME element inside an http IFRAME element. | 2 | 6.8 | Medium | 2017-01-19 | 2016-11-28 | View | |
20727 | CVE-2016-5477 | Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Fusion Middleware 2.1.1 and 3.0.1 allows remote attackers to affect confidentiality via vectors related to Administration. | 2 | 5 | Medium | 2017-01-19 | 2016-11-28 | View |
Page 17371 of 17672, showing 5 records out of 88360 total, starting on record 86851, ending on 86855