NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
17949  CVE-2016-1594  Micro Focus Novell Service Desk before 7.2 allows remote authenticated users to read arbitrary attachments via a request to a LiveTime.woa URL, as demonstrated by obtaining sensitive information via a (1) downloadLogFiles or (2) downloadFile action.    Medium  2017-01-19  2016-12-02  View
18205  CVE-2016-1858  WebKit, as used in Apple iOS before 9.3.2, Safari before 9.1.1, and tvOS before 9.2.1, improperly tracks taint attributes, which allows remote attackers to obtain sensitive information via a crafted web site.    4.3  Medium  2017-01-19  2016-11-30  View
18461  CVE-2016-2191  The bmp_read_rows function in pngxtern/pngxrbmp.c in OptiPNG before 0.7.6 allows remote attackers to cause a denial of service (invalid memory write and crash) via a series of delta escapes in a crafted BMP image.    4.3  Medium  2017-01-19  2016-11-28  View
18717  CVE-2016-2504  The Qualcomm GPU driver in Android before 2016-08-05 on Nexus 5, 5X, 6, 6P, and 7 (2013) devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28026365 and Qualcomm internal bug CR1002974.    6.9  Medium  2017-01-19  2016-11-28  View
18973  CVE-2016-3115  Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSSH before 7.2p2 allow remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data, related to the (1) do_authenticated1 and (2) session_x11_req functions.    5.5  Medium  2017-01-19  2016-12-02  View

Page 2935 of 17672, showing 5 records out of 88360 total, starting on record 14671, ending on 14675

Actions