NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 29745 | CVE-2014-0909 | The Administration and Reporting Tool in IBM Rational License Key Server (RLKS) 8.1.4.x before 8.1.4.4 does not set the secure flag for the session cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session. | 2 | 5 | Medium | 2017-01-19 | 2017-01-06 | View | |
| 31537 | CVE-2014-3335 | Cisco IOS XR 4.3(.2) and earlier on ASR 9000 devices does not properly perform NetFlow sampling of packets with multicast destination MAC addresses, which allows remote attackers to cause a denial of service (chip and card hangs) via a crafted packet, aka Bug ID CSCup77750. | 2 | 4.6 | Medium | 2017-01-19 | 2017-01-06 | View | |
| 39985 | CVE-2013-4371 | Use-after-free vulnerability in the libxl_list_cpupool function in the libxl toolstack library in Xen 4.2.x and 4.3.x, when running "under memory pressure," returns the original pointer when the realloc function fails, which allows local users to cause a denial of service (heap corruption and crash) and possibly execute arbitrary code via unspecified vectors. | 2 | 4.4 | Medium | 2017-01-18 | 2017-01-06 | View | |
| 20786 | CVE-2016-5554 | Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect integrity via vectors related to JMX. | 2 | 4.3 | Medium | 2017-01-19 | 2017-01-06 | View | |
| 31538 | CVE-2014-3336 | SQL injection vulnerability in the web framework in Cisco Unity Connection 9.1(2) and earlier allows remote authenticated users to execute arbitrary SQL commands via a crafted request, aka Bug ID CSCuq31016. | 2 | 6.5 | Medium | 2017-01-19 | 2017-01-06 | View |
Page 2516 of 17672, showing 5 records out of 88360 total, starting on record 12576, ending on 12580