NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
17701  CVE-2016-1286  named in ISC BIND 9.x before 9.9.8-P4 and 9.10.x before 9.10.3-P4 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted signature record for a DNAME record, related to db.c and resolver.c.    Medium  2017-01-19  2016-12-30  View
83237  CVE-2017-5668  bitlbee-libpurple before 3.5.1 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) and possibly execute arbitrary code via a file transfer request for a contact that is not in the contact list. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-10189.    7.5  High  2017-03-18  2017-03-15  View
17957  CVE-2016-1607  Multiple cross-site request forgery (CSRF) vulnerabilities in the administrative interface in Novell Filr before 2.0 Security Update 2 allow remote attackers to hijack the authentication of administrators, as demonstrated by reconfiguring time settings via a vaconfig/time request.    6.5  Medium  2017-01-19  2016-11-28  View
83493  CVE-2017-6916  CSRF exists in BigTree CMS 4.1.18 with the nav-social[#] parameter to the admin/settings/update/ page. The Navigation Social can be changed.    4.3  Medium  2017-03-18  2017-03-16  View
18213  CVE-2016-1866  Salt 2015.8.x before 2015.8.4 does not properly handle clear messages on the minion, which allows man-in-the-middle attackers to execute arbitrary code by inserting packets into the minion-master data stream.    6.8  Medium  2017-01-19  2016-04-21  View

Page 2889 of 17672, showing 5 records out of 88360 total, starting on record 14441, ending on 14445

Actions