NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
17957  CVE-2016-1607  Multiple cross-site request forgery (CSRF) vulnerabilities in the administrative interface in Novell Filr before 2.0 Security Update 2 allow remote attackers to hijack the authentication of administrators, as demonstrated by reconfiguring time settings via a vaconfig/time request.    6.5  Medium  2017-01-19  2016-11-28  View
18213  CVE-2016-1866  Salt 2015.8.x before 2015.8.4 does not properly handle clear messages on the minion, which allows man-in-the-middle attackers to execute arbitrary code by inserting packets into the minion-master data stream.    6.8  Medium  2017-01-19  2016-04-21  View
18469  CVE-2016-2200  Siemens SIMATIC S7-1500 CPU devices before 1.8.3 allow remote attackers to cause a denial of service (STOP mode transition) via crafted packets on TCP port 102.    7.8  High  2017-01-19  2016-12-06  View
18725  CVE-2016-2512  The utils.http.is_safe_url function in Django before 1.8.10 and 1.9.x before 1.9.3 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks or possibly conduct cross-site scripting (XSS) attacks via a URL containing basic authentication, as demonstrated by http://mysite.example.com@attacker.com.    4.3  Medium  2017-01-19  2016-12-02  View
18981  CVE-2016-3129  A remote shell execution vulnerability in the BlackBerry Good Enterprise Mobility Server (GEMS) implementation of the Apache Karaf command shell in GEMS versions 2.1.5.3 to 2.2.22.25 allows remote attackers to obtain local administrator rights on the GEMS server via commands executed on the Karaf command shell.    8.5  High  2017-01-19  2016-12-21  View

Page 3090 of 17672, showing 5 records out of 88360 total, starting on record 15446, ending on 15450

Actions