NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 17957 | CVE-2016-1607 | Multiple cross-site request forgery (CSRF) vulnerabilities in the administrative interface in Novell Filr before 2.0 Security Update 2 allow remote attackers to hijack the authentication of administrators, as demonstrated by reconfiguring time settings via a vaconfig/time request. | 2 | 6.5 | Medium | 2017-01-19 | 2016-11-28 | View | |
| 18213 | CVE-2016-1866 | Salt 2015.8.x before 2015.8.4 does not properly handle clear messages on the minion, which allows man-in-the-middle attackers to execute arbitrary code by inserting packets into the minion-master data stream. | 2 | 6.8 | Medium | 2017-01-19 | 2016-04-21 | View | |
| 18469 | CVE-2016-2200 | Siemens SIMATIC S7-1500 CPU devices before 1.8.3 allow remote attackers to cause a denial of service (STOP mode transition) via crafted packets on TCP port 102. | 2 | 7.8 | High | 2017-01-19 | 2016-12-06 | View | |
| 18725 | CVE-2016-2512 | The utils.http.is_safe_url function in Django before 1.8.10 and 1.9.x before 1.9.3 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks or possibly conduct cross-site scripting (XSS) attacks via a URL containing basic authentication, as demonstrated by http://mysite.example.com@attacker.com. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-02 | View | |
| 18981 | CVE-2016-3129 | A remote shell execution vulnerability in the BlackBerry Good Enterprise Mobility Server (GEMS) implementation of the Apache Karaf command shell in GEMS versions 2.1.5.3 to 2.2.22.25 allows remote attackers to obtain local administrator rights on the GEMS server via commands executed on the Karaf command shell. | 2 | 8.5 | High | 2017-01-19 | 2016-12-21 | View |
Page 3090 of 17672, showing 5 records out of 88360 total, starting on record 15446, ending on 15450