NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86565 | CVE-2017-3740 | In Lenovo Active Protection System before 1.82.0.14, an attacker with local privileges could send commands to the system's embedded controller, which could cause a denial of service attack on the system or the ability to alter hardware functionality. | 2 | 4.9 | Medium | 2017-06-17 | 2017-06-13 | View | |
86564 | CVE-2016-8741 | The Apache Qpid Broker for Java can be configured to use different so called AuthenticationProviders to handle user authentication. Among the choices are the SCRAM-SHA-1 and SCRAM-SHA-256 AuthenticationProvider types. It was discovered that these AuthenticationProviders in Apache Qpid Broker for Java 6.0.x before 6.0.6 and 6.1.x before 6.1.1 prematurely terminate the SCRAM SASL negotiation if the provided user name does not exist thus allowing remote attacker to determine the existence of user accounts. The Vulnerability does not apply to AuthenticationProviders other than SCRAM-SHA-1 and SCRAM-SHA-256. | 2 | 5 | Medium | 2017-06-04 | 2017-05-31 | View | |
86563 | CVE-2016-8231 | In Lenovo Service Bridge before version 4, a bug found in the signature verification logic of the code signing certificate could be exploited by an attacker to insert a forged code signing certificate. | 2 | 5 | Medium | 2017-06-12 | 2017-06-09 | View | |
86562 | CVE-2016-8230 | In Lenovo Service Bridge before version 4, an insecure HTTP connection is used by LSB to send system serial number, machine type and model and product name to Lenovo's servers. | 2 | 5 | Medium | 2017-06-12 | 2017-06-09 | View | |
86561 | CVE-2016-8229 | A cross-site request forgery vulnerability in Lenovo Service Bridge before version 4 could be exploited by an attacker with access to the DHCP server used by the system where LSB is installed. | 2 | 6.8 | Medium | 2017-06-12 | 2017-06-09 | View |
Page 360 of 17672, showing 5 records out of 88360 total, starting on record 1796, ending on 1800