NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
18982  CVE-2016-3130  An information disclosure vulnerability in the Core and Management Console in BlackBerry Enterprise Server (BES) 12 through 12.5.2 allows remote attackers to obtain local or domain credentials of an administrator or user account by sniffing traffic between the two elements during a login attempt.    4.3  Medium  2017-02-06  2017-02-02  View
84518  CVE-2017-3506  Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: Web Services). Supported versions that are affected are 10.3.6.0, 12.1.3.0, 12.2.1.0, 12.2.1.1 and 12.2.1.2. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle WebLogic Server accessible data as well as unauthorized access to critical data or complete access to all Oracle WebLogic Server accessible data. CVSS 3.0 Base Score 7.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N).    5.8  Medium  2017-07-18  2017-07-10  View
19238  CVE-2016-3431  Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.1.1, 9.3.1.2, 9.3.2, and 9.3.3 allows remote authenticated users to affect confidentiality and integrity via vectors related to Security, a different vulnerability than CVE-2016-3420.    3.6  Low  2017-01-19  2016-04-26  View
84774  CVE-2017-7220  OpenText Documentum Content Server allows superuser access via sys_obj_save or save of a crafted object, followed by an unauthorized UPDATE dm_dbo.dm_user_s SET user_privileges=16 command, aka an RPC save-commands attack. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-4532.    High  2017-05-07  2017-04-28  View
19494  CVE-2016-3726  Multiple open redirect vulnerabilities in Jenkins before 2.3 and LTS before 1.651.2 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors related to "scheme-relative" URLs.    5.8  Medium  2017-01-19  2016-07-14  View

Page 2959 of 17672, showing 5 records out of 88360 total, starting on record 14791, ending on 14795

Actions