NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 21075 | CVE-2016-6214 | gd_tga.c in the GD Graphics Library (aka libgd) before 2.2.3 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TGA file. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View | |
| 21331 | CVE-2016-6653 | The MariaDB audit_plugin component in Pivotal Cloud Foundry (PCF) cf-mysql-release 27 and 28 allows remote attackers to obtain sensitive information by reading syslog messages, as demonstrated by cleartext credentials. | 2 | 5 | Medium | 2017-01-19 | 2016-11-28 | View | |
| 86867 | CVE-2016-9977 | IBM Maximo Asset Management 7.1, 7.5, and 7.6 could allow a remote attacker to hijack a user's session, caused by the failure to invalidate an existing session identifier. An attacker could exploit this vulnerability to gain access to another user's session. IBM X-Force ID: 120253. | 2 | 6.5 | Medium | 2017-06-18 | 2017-06-12 | View | |
| 87123 | CVE-2017-9582 | The BNB Mobile Banking by Brady National Bank app 3.0.0 -- aka bnb-mobile-banking/id674215747 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 2 | 4.3 | Medium | 2017-07-18 | 2017-06-28 | View | |
| 21843 | CVE-2016-7426 | NTP before 4.2.8p9 rate limits responses received from the configured sources when rate limiting for all associations is enabled, which allows remote attackers to cause a denial of service (prevent responses from the sources) by sending responses with a spoofed source address. | 2 | 4.3 | Medium | 2017-02-15 | 2017-02-10 | View |
Page 2991 of 17672, showing 5 records out of 88360 total, starting on record 14951, ending on 14955