NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83999  CVE-2016-9169  A reflected XSS vulnerability exists in the web console of the Document Viewer Agent in Novell GroupWise before 2014 R2 Support Pack 1 Hot Patch 2 that may enable a remote attacker to execute JavaScript in the context of a valid user"s browser session by getting the user to click on a specially crafted link. This could lead to session compromise or other browser-based attacks.    4.3  Medium  2017-03-29  2017-03-24  View
18719  CVE-2016-2506  DRMExtractor.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-07-01 does not validate a certain offset value, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 28175045.    10  High  2017-01-19  2016-07-11  View
18975  CVE-2016-3118  CRLF injection vulnerability in CA API Gateway (formerly Layer7 API Gateway) 7.1 before 7.1.04, 8.0 through 8.3 before 8.3.01, and 8.4 before 8.4.01 allows remote attackers to have an unspecified impact via unknown vectors.    6.4  Medium  2017-01-19  2016-04-07  View
19231  CVE-2016-3423  Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.53, 8.54, and 8.55 allows remote authenticated users to affect confidentiality and integrity via vectors related to Rich Text Editor, a different vulnerability than CVE-2016-0698.    3.5  Low  2017-01-19  2016-12-02  View
19743  CVE-2016-4021  The read_binary function in buffer.c in pgpdump before 0.30 allows context-dependent attackers to cause a denial of service (infinite loop and CPU consumption) via crafted input, as demonstrated by the xa3x03 string.    7.8  High  2017-01-19  2016-06-15  View

Page 1888 of 17672, showing 5 records out of 88360 total, starting on record 9436, ending on 9440

Actions