NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
81870  CVE-2016-6667  NetApp OnCommand Unified Manager for Clustered Data ONTAP 6.3 through 6.4P1 contain a default privileged account, which allows remote attackers to execute arbitrary code via unspecified vectors.    7.5  High  2017-02-28  2017-02-24  View
81883  CVE-2016-8491  The presence of a hardcoded account named "core" in Fortinet FortiWLC allows attackers to gain unauthorized read/write access via a remote shell.    9.4  High  2017-02-28  2017-02-24  View
17675  CVE-2016-1247  The nginx package before 1.6.2-5+deb8u3 on Debian jessie, the nginx packages before 1.4.6-1ubuntu3.6 on Ubuntu 14.04 LTS, before 1.10.0-0ubuntu0.16.04.3 on Ubuntu 16.04 LTS, and before 1.10.1-0ubuntu1.1 on Ubuntu 16.10, and the nginx ebuild before 1.10.2-r3 on Gentoo allow local users with access to the web server user account to gain root privileges via a symlink attack on the error log.    7.2  High  2017-02-28  2017-02-23  View
82445  CVE-2016-9244  A BIG-IP virtual server configured with a Client SSL profile that has the non-default Session Tickets option enabled may leak up to 31 bytes of uninitialized memory. A remote attacker may exploit this vulnerability to obtain Secure Sockets Layer (SSL) session IDs from other sessions. It is possible that other data from uninitialized memory may be returned as well.    Medium  2017-02-28  2017-02-23  View
18447  CVE-2016-2177  OpenSSL through 1.0.2h incorrectly uses pointer arithmetic for heap-buffer boundary checks, which might allow remote attackers to cause a denial of service (integer overflow and application crash) or possibly have unspecified other impact by leveraging unexpected malloc behavior, related to s3_srvr.c, ssl_sess.c, and t1_lib.c.    7.5  High  2017-02-28  2017-02-23  View

Page 2091 of 17672, showing 5 records out of 88360 total, starting on record 10451, ending on 10455

Actions