NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 18230 | CVE-2016-1906 | The API server in Kubernetes might allow remote attackers to gain privileges by editing a build configuration to use a restricted strategy. | 2 | 10 | High | 2017-01-19 | 2016-06-15 | View | |
| 18486 | CVE-2016-2221 | Open redirect vulnerability in the wp_validate_redirect function in wp-includes/pluggable.php in WordPress before 4.4.2 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a malformed URL that triggers incorrect hostname parsing, as demonstrated by an https:example.com URL. | 2 | 5.8 | Medium | 2017-01-19 | 2016-11-28 | View | |
| 84022 | CVE-2016-9455 | Revive Adserver before 3.2.3 suffers from Cross-Site Request Forgery (CSRF). A number of scripts in Revive Adserver"s user interface are vulnerable to CSRF attacks: `www/admin/banner-acl.php`, `www/admin/banner-activate.php`, `www/admin/banner-advanced.php`, `www/admin/banner-modify.php`, `www/admin/banner-swf.php`, `www/admin/banner-zone.php`, `www/admin/tracker-modify.php`. | 2 | 6.8 | Medium | 2017-03-29 | 2017-03-29 | View | |
| 18742 | CVE-2016-2537 | The is-my-json-valid package before 2.12.4 for Node.js has an incorrect exports["utc-millisec"] regular expression, which allows remote attackers to cause a denial of service (blocked event loop) via a crafted string. | 2 | 5 | Medium | 2017-01-19 | 2016-02-29 | View | |
| 18998 | CVE-2016-3152 | Barco ClickShare CSC-1 devices with firmware before 01.09.03 allow remote attackers to obtain the root password by downloading and extracting the firmware image. | 2 | 5 | Medium | 2017-01-19 | 2017-01-18 | View |
Page 3272 of 17672, showing 5 records out of 88360 total, starting on record 16356, ending on 16360