NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
18588  CVE-2016-2355  SQL injection vulnerability in the REST API in dotCMS before 3.3.2 allows remote attackers to execute arbitrary SQL commands via the stName parameter to api/content/save/1.    7.5  High  2017-01-19  2016-12-22  View
18587  CVE-2016-2354  The Bluetooth functionality in Lemur Vehicle Monitors BlueDriver before 2016-04-07 supports unrestricted pairing without a PIN, which allows remote attackers to send arbitrary CAN commands by leveraging access to a device inside or adjacent to the vehicle, as demonstrated by a CAN command to disrupt braking or steering.    High  2017-01-19  2016-05-31  View
18586  CVE-2016-2353  The Accellion File Transfer Appliance (FTA) before FTA_9_12_40 allows local users to add an SSH key to an arbitrary group, and consequently gain privileges, via unspecified vectors.    7.2  High  2017-01-19  2016-05-10  View
18585  CVE-2016-2352  The Accellion File Transfer Appliance (FTA) before FTA_9_12_40 allows remote authenticated users to execute arbitrary commands by leveraging the YUM_CLIENT restricted-user role.    6.5  Medium  2017-01-19  2016-05-09  View
18584  CVE-2016-2351  SQL injection vulnerability in home/seos/courier/security_key2.api on the Accellion File Transfer Appliance (FTA) before FTA_9_12_40 allows remote attackers to execute arbitrary SQL commands via the client_id parameter.    7.5  High  2017-01-19  2016-05-10  View

Page 2047 of 17672, showing 5 records out of 88360 total, starting on record 10231, ending on 10235

Actions