NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 18588 | CVE-2016-2355 | SQL injection vulnerability in the REST API in dotCMS before 3.3.2 allows remote attackers to execute arbitrary SQL commands via the stName parameter to api/content/save/1. | 2 | 7.5 | High | 2017-01-19 | 2016-12-22 | View | |
| 18587 | CVE-2016-2354 | The Bluetooth functionality in Lemur Vehicle Monitors BlueDriver before 2016-04-07 supports unrestricted pairing without a PIN, which allows remote attackers to send arbitrary CAN commands by leveraging access to a device inside or adjacent to the vehicle, as demonstrated by a CAN command to disrupt braking or steering. | 2 | 8 | High | 2017-01-19 | 2016-05-31 | View | |
| 18586 | CVE-2016-2353 | The Accellion File Transfer Appliance (FTA) before FTA_9_12_40 allows local users to add an SSH key to an arbitrary group, and consequently gain privileges, via unspecified vectors. | 2 | 7.2 | High | 2017-01-19 | 2016-05-10 | View | |
| 18585 | CVE-2016-2352 | The Accellion File Transfer Appliance (FTA) before FTA_9_12_40 allows remote authenticated users to execute arbitrary commands by leveraging the YUM_CLIENT restricted-user role. | 2 | 6.5 | Medium | 2017-01-19 | 2016-05-09 | View | |
| 18584 | CVE-2016-2351 | SQL injection vulnerability in home/seos/courier/security_key2.api on the Accellion File Transfer Appliance (FTA) before FTA_9_12_40 allows remote attackers to execute arbitrary SQL commands via the client_id parameter. | 2 | 7.5 | High | 2017-01-19 | 2016-05-10 | View |
Page 2047 of 17672, showing 5 records out of 88360 total, starting on record 10231, ending on 10235