NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 17949 | CVE-2016-1594 | Micro Focus Novell Service Desk before 7.2 allows remote authenticated users to read arbitrary attachments via a request to a LiveTime.woa URL, as demonstrated by obtaining sensitive information via a (1) downloadLogFiles or (2) downloadFile action. | 2 | 4 | Medium | 2017-01-19 | 2016-12-02 | View | |
| 18205 | CVE-2016-1858 | WebKit, as used in Apple iOS before 9.3.2, Safari before 9.1.1, and tvOS before 9.2.1, improperly tracks taint attributes, which allows remote attackers to obtain sensitive information via a crafted web site. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-30 | View | |
| 18461 | CVE-2016-2191 | The bmp_read_rows function in pngxtern/pngxrbmp.c in OptiPNG before 0.7.6 allows remote attackers to cause a denial of service (invalid memory write and crash) via a series of delta escapes in a crafted BMP image. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View | |
| 18717 | CVE-2016-2504 | The Qualcomm GPU driver in Android before 2016-08-05 on Nexus 5, 5X, 6, 6P, and 7 (2013) devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28026365 and Qualcomm internal bug CR1002974. | 2 | 6.9 | Medium | 2017-01-19 | 2016-11-28 | View | |
| 18973 | CVE-2016-3115 | Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSSH before 7.2p2 allow remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data, related to the (1) do_authenticated1 and (2) session_x11_req functions. | 2 | 5.5 | Medium | 2017-01-19 | 2016-12-02 | View |
Page 2935 of 17672, showing 5 records out of 88360 total, starting on record 14671, ending on 14675