NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
20230 | CVE-2016-4620 | The Sandbox Profiles component in Apple iOS before 10 does not properly restrict access to directory metadata for SMS draft directories, which allows attackers to discover text-message recipients via a crafted app. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View | |
20486 | CVE-2016-5147 | Blink, as used in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux, mishandles deferred page loads, which allows remote attackers to inject arbitrary web script or HTML via a crafted web site, aka "Universal XSS (UXSS)." | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View | |
20742 | CVE-2016-5498 | Unspecified vulnerability in the RDBMS Security component in Oracle Database Server 11.2.0.4 and 12.1.0.2 allows local users to affect confidentiality via unknown vectors, a different vulnerability than CVE-2016-5499. | 2 | 2.1 | Low | 2017-01-19 | 2016-11-28 | View | |
20998 | CVE-2016-5947 | IBM Spectrum Control (formerly Tivoli Storage Productivity Center) 5.2.x before 5.2.11 allows remote authenticated users to conduct clickjacking attacks via a crafted web site. | 2 | 3.5 | Low | 2017-01-19 | 2016-11-28 | View | |
21254 | CVE-2016-6492 | The MT6573FDVT_SetRegHW function in camera_fdvt.c in the MediaTek driver for Linux allows local users to gain privileges via a crafted application that makes an MT6573FDVTIOC_T_SET_FDCONF_CMD IOCTL call. | 2 | 9.3 | High | 2017-01-19 | 2017-01-18 | View |
Page 386 of 17672, showing 5 records out of 88360 total, starting on record 1926, ending on 1930