NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
20483 | CVE-2016-5144 | The Developer Tools (aka DevTools) subsystem in Blink, as used in Google Chrome before 52.0.2743.116, mishandles the script-path hostname, remoteBase parameter, and remoteFrontendUrl parameter, which allows remote attackers to bypass intended access restrictions via a crafted URL, a different vulnerability than CVE-2016-5143. | 2 | 7.5 | High | 2017-01-19 | 2016-11-28 | View | |
20739 | CVE-2016-5493 | Unspecified vulnerability in the Oracle FLEXCUBE Private Banking component in Oracle Financial Services Applications 12.0.1 through 12.0.3 allows remote authenticated users to affect confidentiality and integrity via unknown vectors. | 2 | 4.9 | Medium | 2017-01-19 | 2016-11-28 | View | |
20995 | CVE-2016-5944 | Cross-site scripting (XSS) vulnerability in the Web UI in IBM Spectrum Control (formerly Tivoli Storage Productivity Center) 5.2.x before 5.2.11 allows remote authenticated users to inject arbitrary web script or HTML via an embedded string. | 2 | 3.5 | Low | 2017-01-19 | 2016-11-28 | View | |
21251 | CVE-2016-6486 | Siemens SINEMA Server uses weak permissions for the application folder, which allows local users to gain privileges via unspecified vectors. | 2 | 7.2 | High | 2017-01-19 | 2016-11-28 | View | |
21763 | CVE-2016-7247 | Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 1607, and Windows Server 2016 allow physically proximate attackers to bypass the Secure Boot protection mechanism via a crafted boot policy, aka "Secure Boot Component Vulnerability." | 2 | 5 | Medium | 2017-01-19 | 2016-12-02 | View |
Page 207 of 17672, showing 5 records out of 88360 total, starting on record 1031, ending on 1035