NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 20014 | CVE-2016-4330 | In the HDF5 1.8.16 library"s failure to check if the number of dimensions for an array read from the file is within the bounds of the space allocated for it, a heap-based buffer overflow will occur, potentially leading to arbitrary code execution. | 2 | 6.9 | Medium | 2017-01-19 | 2016-11-28 | View | |
| 85550 | CVE-2017-8371 | Schneider Electric StruxureWare Data Center Expert before 7.4.0 uses cleartext RAM storage for passwords, which might allow remote attackers to obtain sensitive information via unspecified vectors. | 2 | 4 | Medium | 2017-05-27 | 2017-05-12 | View | |
| 20270 | CVE-2016-4701 | Application Firewall in Apple OS X before 10.12 allows local users to cause a denial of service via vectors involving a crafted SO_EXECPATH environment variable. | 2 | 2.1 | Low | 2017-01-19 | 2016-11-28 | View | |
| 85806 | CVE-2017-1282 | IBM Content Navigator & CMIS 2.0 and 3.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 124760. | 2 | 3.5 | Low | 2017-06-03 | 2017-06-01 | View | |
| 20526 | CVE-2016-5191 | Bookmark handling in Google Chrome prior to 54.0.2840.59 for Windows, Mac, and Linux; 54.0.2840.85 for Android had insufficient validation of supplied data, which allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via crafted HTML pages, as demonstrated by an interpretation conflict between userinfo and scheme in an http://javascript:payload@example.com URL. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-20 | View |
Page 3152 of 17672, showing 5 records out of 88360 total, starting on record 15756, ending on 15760