NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
20482 | CVE-2016-5143 | The Developer Tools (aka DevTools) subsystem in Blink, as used in Google Chrome before 52.0.2743.116, mishandles the script-path hostname, remoteBase parameter, and remoteFrontendUrl parameter, which allows remote attackers to bypass intended access restrictions via a crafted URL, a different vulnerability than CVE-2016-5144. | 2 | 7.5 | High | 2017-01-19 | 2016-11-28 | View | |
86018 | CVE-2017-7433 | An absolute path traversal vulnerability (CWE-36) in Micro Focus Vibe 4.0.2 and earlier allows a remote authenticated attacker to download arbitrary files from the server by submitting a specially crafted request to the viewFile endpoint. Note that the attack can be performed without authentication if Guest access is enabled (Guest access is disabled by default). | 2 | 4 | Medium | 2017-06-03 | 2017-06-01 | View | |
20738 | CVE-2016-5492 | Unspecified vulnerability in the Sun ZFS Storage Appliance Kit (AK) component in Oracle Sun Systems Products Suite AK 2013 allows local users to affect confidentiality and integrity via vectors related to SMB Users. | 2 | 3.6 | Low | 2017-01-19 | 2016-11-28 | View | |
86274 | CVE-2017-9185 | libautotrace.a in AutoTrace 0.31.1 has a cannot be represented in type int issue in input-bmp.c:319:7. | 2 | 7.5 | High | 2017-06-03 | 2017-05-28 | View | |
20994 | CVE-2016-5943 | IBM Spectrum Control (formerly Tivoli Storage Productivity Center) 5.2.x before 5.2.11 allows remote authenticated users to bypass intended access restrictions, and read task details or edit properties, via unspecified vectors. | 2 | 5.5 | Medium | 2017-01-19 | 2016-11-28 | View |
Page 519 of 17672, showing 5 records out of 88360 total, starting on record 2591, ending on 2595