NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
87225 | CVE-2017-1000380 | sound/core/timer.c in the Linux kernel before 4.11.5 is vulnerable to a data race in the ALSA /dev/snd/timer driver resulting in local users being able to read information belonging to other users, i.e., uninitialized memory contents may be disclosed when a read and an ioctl happen at the same time. | 2 | 2.1 | Low | 2017-06-23 | 2017-06-21 | View | |
87224 | CVE-2016-9984 | IBM Maximo Asset Management 7.5 and 7.6 could allow a remote authenticated attacker to execute arbitrary commands on the system as administrator. IBM X-Force ID: 120276. | 2 | 6.5 | Medium | 2017-06-18 | 2017-06-16 | View | |
87223 | CVE-2016-9973 | IBM Jazz Foundation is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 120209. | 2 | 3.5 | Low | 2017-06-28 | 2017-06-26 | View | |
87222 | CVE-2016-8751 | Apache Ranger before 0.6.is vulnerable to a Stored Cross-Site Scripting in when entering custom policy conditions. Admin users can store some arbitrary javascript code to be executed when normal users login and access policies. | 2 | 3.5 | Low | 2017-06-23 | 2017-06-19 | View | |
87221 | CVE-2016-8746 | Apache Ranger before 0.6.3 policy engine incorrectly matches paths in certain conditions when policy does not contain wildcards and has recursion flag set to true. | 2 | 4.3 | Medium | 2017-06-23 | 2017-06-19 | View |
Page 228 of 17672, showing 5 records out of 88360 total, starting on record 1136, ending on 1140