NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
41486  CVE-2013-6429  The SourceHttpMessageConverter in Spring MVC in Spring Framework before 3.2.5 and 4.0.0.M1 through 4.0.0.RC1 does not disable external entity resolution, which allows remote attackers to read arbitrary files, cause a denial of service, and conduct CSRF attacks via crafted XML, aka an XML External Entity (XXE) issue, and a different vulnerability than CVE-2013-4152 and CVE-2013-7315.    6.8  Medium  2017-01-18  2016-11-28  View
76869  CVE-2000-0628  The source.asp example script in the Apache ASP module Apache::ASP 1.93 and earlier allows remote attackers to modify files.    7.5  High  2017-01-05  2008-09-05  View
64451  CVE-2006-5876  The soup_headers_parse function in soup-headers.c for libsoup HTTP library before 2.2.99 allows remote attackers to cause a denial of service (crash) via malformed HTTP headers, probably involving missing fields or values.    7.8  High  2016-12-20  2011-03-07  View
21359  CVE-2016-6690  The sound driver in the kernel in Android before 2016-10-05 on Nexus 5, Nexus 5X, Nexus 6, Nexus 6P, and Nexus Player devices allows attackers to cause a denial of service (reboot) via a crafted application, aka internal bug 28838221.    7.1  High  2017-01-19  2016-12-06  View
44383  CVE-2012-2664  The sosreport utility in the Red Hat sos package before 2.2-29 does not remove the root user password information from the Kickstart configuration file (/root/anaconda-ks.cfg) when creating an archive of debugging information, which might allow attackers to obtain passwords or password hashes.    4.3  Medium  2017-01-19  2016-09-08  View

Page 3057 of 17672, showing 5 records out of 88360 total, starting on record 15281, ending on 15285

Actions