NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
65181  CVE-2006-6637  The Servlet Engine and Web Container in IBM WebSphere Application Server (WAS) before 6.0.2.17, when ibm-web-ext.xmi sets fileServingEnabled to true and servlet caching is enabled, allows remote attackers to obtain JSP source code and other sensitive information via "specific requests."    Medium  2016-12-20  2011-06-14  View
18273  CVE-2016-1959  The ServiceWorkerManager class in Mozilla Firefox before 45.0 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read and memory corruption) via unspecified use of the Clients API.    6.8  Medium  2017-01-19  2016-12-02  View
18032  CVE-2016-1682  The ServiceWorkerContainer::registerServiceWorkerImpl function in WebKit/Source/modules/serviceworkers/ServiceWorkerContainer.cpp in Blink, as used in Google Chrome before 51.0.2704.63, allows remote attackers to bypass the Content Security Policy (CSP) protection mechanism via a ServiceWorker registration.    4.3  Medium  2017-01-19  2016-11-28  View
25852  CVE-2015-4394  The Services module 7.x-3.x before 7.x-3.12 for Drupal allows remote attackers to bypass the field_access restriction and obtain sensitive private field information via unspecified vectors.    Medium  2017-01-19  2016-06-09  View
35911  CVE-2014-9151  The Services module 7.x-3.x before 7.x-3.10 for Drupal does not properly limit the rate of authentication attempts, which makes it easier for remote attackers to obtain access via a brute-force attack on the administrative password.    7.5  High  2017-01-19  2014-12-01  View

Page 3171 of 17672, showing 5 records out of 88360 total, starting on record 15851, ending on 15855

Actions