NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
18953  CVE-2016-3072  Multiple SQL injection vulnerabilities in the scoped_search function in app/controllers/katello/api/v2/api_controller.rb in Katello allow remote authenticated users to execute arbitrary SQL commands via the (1) sort_by or (2) sort_order parameter.    6.5  Medium  2017-01-19  2016-06-09  View
19209  CVE-2016-3396  Graphics Device Interface (aka GDI or GDI+) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10 Gold, 1511, and 1607; Office 2007 SP3; Office 2010 SP2; Word Viewer; Skype for Business 2016; Lync 2013 SP1; Lync 2010; Lync 2010 Attendee; and Live Meeting 2007 Console allows remote attackers to execute arbitrary code via a crafted embedded font, aka "GDI+ Remote Code Execution Vulnerability."    9.3  High  2017-01-19  2016-11-28  View
19465  CVE-2016-3686  The Single Sign-On (SSO) feature in F5 BIG-IP APM 11.x before 11.6.0 HF6 and BIG-IP Edge Gateway 11.0.0 through 11.3.0 might allow remote attackers to obtain sensitive SessionId information by leveraging access to the Location HTTP header in a redirect.    4.3  Medium  2017-01-19  2016-04-18  View
19721  CVE-2016-3990  Heap-based buffer overflow in the horizontalDifference8 function in tif_pixarlog.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted TIFF image to tiffcp.    6.8  Medium  2017-01-19  2016-10-04  View
85257  CVE-2015-8284  SeaWell Networks Spectrum SDC 02.05.00 allows remote viewer users to perform administrative functions.    6.5  Medium  2017-04-27  2017-04-19  View

Page 564 of 17672, showing 5 records out of 88360 total, starting on record 2816, ending on 2820

Actions