NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
18953 | CVE-2016-3072 | Multiple SQL injection vulnerabilities in the scoped_search function in app/controllers/katello/api/v2/api_controller.rb in Katello allow remote authenticated users to execute arbitrary SQL commands via the (1) sort_by or (2) sort_order parameter. | 2 | 6.5 | Medium | 2017-01-19 | 2016-06-09 | View | |
19209 | CVE-2016-3396 | Graphics Device Interface (aka GDI or GDI+) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10 Gold, 1511, and 1607; Office 2007 SP3; Office 2010 SP2; Word Viewer; Skype for Business 2016; Lync 2013 SP1; Lync 2010; Lync 2010 Attendee; and Live Meeting 2007 Console allows remote attackers to execute arbitrary code via a crafted embedded font, aka "GDI+ Remote Code Execution Vulnerability." | 2 | 9.3 | High | 2017-01-19 | 2016-11-28 | View | |
19465 | CVE-2016-3686 | The Single Sign-On (SSO) feature in F5 BIG-IP APM 11.x before 11.6.0 HF6 and BIG-IP Edge Gateway 11.0.0 through 11.3.0 might allow remote attackers to obtain sensitive SessionId information by leveraging access to the Location HTTP header in a redirect. | 2 | 4.3 | Medium | 2017-01-19 | 2016-04-18 | View | |
19721 | CVE-2016-3990 | Heap-based buffer overflow in the horizontalDifference8 function in tif_pixarlog.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted TIFF image to tiffcp. | 2 | 6.8 | Medium | 2017-01-19 | 2016-10-04 | View | |
85257 | CVE-2015-8284 | SeaWell Networks Spectrum SDC 02.05.00 allows remote viewer users to perform administrative functions. | 2 | 6.5 | Medium | 2017-04-27 | 2017-04-19 | View |
Page 564 of 17672, showing 5 records out of 88360 total, starting on record 2816, ending on 2820