NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 18448 | CVE-2016-2178 | The dsa_sign_setup function in crypto/dsa/dsa_ossl.c in OpenSSL through 1.0.2h does not properly ensure the use of constant-time operations, which makes it easier for local users to discover a DSA private key via a timing side-channel attack. | 2 | 2.1 | Low | 2017-02-28 | 2017-02-23 | View | |
| 83984 | CVE-2016-8887 | The jp2_colr_destroy function in libjasper/jp2/jp2_cod.c in JasPer before 1.900.10 allows remote attackers to cause a denial of service (NULL pointer dereference). | 2 | 4.3 | Medium | 2017-03-29 | 2017-03-27 | View | |
| 18704 | CVE-2016-2491 | The NVIDIA camera driver in Android before 2016-06-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27556408. | 2 | 9.3 | High | 2017-01-19 | 2016-06-14 | View | |
| 18960 | CVE-2016-3082 | XSLTResult in Apache Struts 2.x before 2.3.20.2, 2.3.24.x before 2.3.24.2, and 2.3.28.x before 2.3.28.1 allows remote attackers to execute arbitrary code via the stylesheet location parameter. | 2 | 10 | High | 2017-01-19 | 2016-11-28 | View | |
| 19216 | CVE-2016-3408 | Cross-site scripting (XSS) vulnerability in Zimbra Collaboration before 8.7.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka bug 101813. | 2 | 4.3 | Medium | 2017-02-06 | 2017-02-02 | View |
Page 3186 of 17672, showing 5 records out of 88360 total, starting on record 15926, ending on 15930