NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
18976 | CVE-2016-3119 | The process_db_args function in plugins/kdb/ldap/libkdb_ldap/ldap_principal2.c in the LDAP KDB module in kadmind in MIT Kerberos 5 (aka krb5) through 1.13.4 and 1.14.x through 1.14.1 mishandles the DB argument, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted request to modify a principal. | 2 | 3.5 | Low | 2017-01-19 | 2016-12-22 | View | |
19232 | CVE-2016-3424 | Unspecified vulnerability in Oracle MySQL 5.7.12 and earlier allows remote administrators to affect availability via vectors related to Server: Optimizer. | 2 | 4 | Medium | 2017-01-19 | 2016-11-28 | View | |
19488 | CVE-2016-3720 | XML external entity (XXE) vulnerability in XmlMapper in the Data format extension for Jackson (aka jackson-dataformat-xml) allows attackers to have unspecified impact via unknown vectors. | 2 | 7.5 | High | 2017-01-19 | 2016-08-03 | View | |
19744 | CVE-2016-4024 | Integer overflow in imlib2 before 1.4.9 on 32-bit platforms allows remote attackers to execute arbitrary code via large dimensions in an image, which triggers an out-of-bounds heap memory write operation. | 2 | 7.5 | High | 2017-01-19 | 2016-11-30 | View | |
85280 | CVE-2016-1155 | HTTP header injection vulnerability in the URLConnection class in Android OS 2.2 through 6.0 allows remote attackers to execute arbitrary scripts or set arbitrary values in cookies. | 2 | 7.5 | High | 2017-04-27 | 2017-04-24 | View |
Page 1949 of 17672, showing 5 records out of 88360 total, starting on record 9741, ending on 9745