NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 82907 | CVE-2016-6189 | Incomplete blacklist in SOGo before 2.3.12 and 3.x before 3.1.1 allows remote authenticated users to obtain sensitive information by reading the fields in the (1) ics or (2) XML calendar feeds. | 2 | 4 | Medium | 2017-02-28 | 2017-02-22 | View | |
| 82652 | CVE-2015-8902 | The ReadBlobByte function in coders/pdb.c in ImageMagick 6.x before 6.9.0-5 Beta allows remote attackers to cause a denial of service (infinite loop) via a crafted PDB file. | 2 | 4.3 | Medium | 2017-02-28 | 2017-02-28 | View | |
| 82908 | CVE-2016-6190 | SOGo before 2.3.12 and 3.x before 3.1.1 does not restrict access to the UID and DTSTAMP attributes, which allows remote authenticated users to obtain sensitive information about appointments with the "View the Date & Time" restriction, as demonstrated by correlating UIDs and DTSTAMPs between all users. | 2 | 4 | Medium | 2017-02-28 | 2017-02-22 | View | |
| 82653 | CVE-2015-8903 | The ReadVICARImage function in coders/vicar.c in ImageMagick 6.x before 6.9.0-5 Beta allows remote attackers to cause a denial of service (infinite loop) via a crafted VICAR file. | 2 | 4.3 | Medium | 2017-02-28 | 2017-02-28 | View | |
| 82909 | CVE-2016-6191 | Multiple cross-site scripting (XSS) vulnerabilities in the View Raw Source page in the Web Calendar in SOGo before 3.1.3 allow remote attackers to inject arbitrary web script or HTML via the (1) Description, (2) Location, (3) URL, or (4) Title field. | 2 | 4.3 | Medium | 2017-02-28 | 2017-02-22 | View |
Page 2140 of 17672, showing 5 records out of 88360 total, starting on record 10696, ending on 10700