NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 20019 | CVE-2016-4336 | An exploitable out-of-bounds write exists in the Bzip2 parsing of the Lexmark Perspective Document Filters conversion functionality. A crafted Bzip2 document can lead to a stack-based buffer overflow causing an out-of-bounds write which under the right circumstance could potentially be leveraged by an attacker to gain arbitrary code execution. | 2 | 7.5 | High | 2017-01-19 | 2017-01-10 | View | |
| 17234 | CVE-2016-0881 | EMC Documentum xCP 2.1 before patch 23 and 2.2 before patch 11 allows remote authenticated users to conduct Documentum Query Language (DQL) injection attacks and obtain sensitive repository information by appending a query to a REST request. | 2 | 4 | Medium | 2017-01-19 | 2017-01-10 | View | |
| 17235 | CVE-2016-0882 | EMC Documentum xCP 2.1 before patch 23 and 2.2 before patch 11 allows remote authenticated users to read arbitrary files via a POST request containing an XML external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. | 2 | 5.5 | Medium | 2017-01-19 | 2017-01-10 | View | |
| 17237 | CVE-2016-0886 | EMC Documentum xCP 2.1 before patch 24 and 2.2 before patch 12 allows remote authenticated users to obtain sensitive user-account metadata via a members/xcp_member API call. | 2 | 4 | Medium | 2017-01-19 | 2017-01-10 | View | |
| 17239 | CVE-2016-0888 | EMC Documentum D2 before 4.6 lacks intended ACLs for configuration objects, which allows remote authenticated users to modify objects via unspecified vectors. | 2 | 9 | High | 2017-01-19 | 2017-01-10 | View |
Page 2454 of 17672, showing 5 records out of 88360 total, starting on record 12266, ending on 12270