NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
18230  CVE-2016-1906  The API server in Kubernetes might allow remote attackers to gain privileges by editing a build configuration to use a restricted strategy.    10  High  2017-01-19  2016-06-15  View
18486  CVE-2016-2221  Open redirect vulnerability in the wp_validate_redirect function in wp-includes/pluggable.php in WordPress before 4.4.2 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a malformed URL that triggers incorrect hostname parsing, as demonstrated by an https:example.com URL.    5.8  Medium  2017-01-19  2016-11-28  View
84022  CVE-2016-9455  Revive Adserver before 3.2.3 suffers from Cross-Site Request Forgery (CSRF). A number of scripts in Revive Adserver"s user interface are vulnerable to CSRF attacks: `www/admin/banner-acl.php`, `www/admin/banner-activate.php`, `www/admin/banner-advanced.php`, `www/admin/banner-modify.php`, `www/admin/banner-swf.php`, `www/admin/banner-zone.php`, `www/admin/tracker-modify.php`.    6.8  Medium  2017-03-29  2017-03-29  View
18742  CVE-2016-2537  The is-my-json-valid package before 2.12.4 for Node.js has an incorrect exports["utc-millisec"] regular expression, which allows remote attackers to cause a denial of service (blocked event loop) via a crafted string.    Medium  2017-01-19  2016-02-29  View
18998  CVE-2016-3152  Barco ClickShare CSC-1 devices with firmware before 01.09.03 allow remote attackers to obtain the root password by downloading and extracting the firmware image.    Medium  2017-01-19  2017-01-18  View

Page 3272 of 17672, showing 5 records out of 88360 total, starting on record 16356, ending on 16360

Actions