NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
84095  CVE-2016-6816  The code in Apache Tomcat 9.0.0.M1 to 9.0.0.M11, 8.5.0 to 8.5.6, 8.0.0.RC1 to 8.0.38, 7.0.0 to 7.0.72, and 6.0.0 to 6.0.47 that parsed the HTTP request line permitted invalid characters. This could be exploited, in conjunction with a proxy that also permitted the invalid characters but with a different interpretation, to inject data into the HTTP response. By manipulating the HTTP response the attacker could poison a web-cache, perform an XSS attack and/or obtain sensitive information from requests other then their own.    6.8  Medium  2017-03-29  2017-03-24  View
84094  CVE-2016-5857  The Qualcomm SPCom driver in Android before 7.0 allows local users to execute arbitrary code within the context of the kernel via a crafted application, aka Android internal bug 34386529 and Qualcomm internal bug CR#1094140.    6.9  Medium  2017-03-29  2017-03-23  View
84093  CVE-2016-4931  XML entity injection in Junos Space before 15.2R2 allows attackers to cause a denial of service.    Medium  2017-03-29  2017-03-22  View
84092  CVE-2016-4930  Cross-site scripting (XSS) vulnerability in Junos Space before 15.2R2 allows remote attackers to steal sensitive information or perform certain administrative actions.    4.3  Medium  2017-03-29  2017-03-22  View
84091  CVE-2016-4929  Command injection vulnerability in Junos Space before 15.2R2 allows attackers to execute arbitrary code as a root user.    High  2017-03-29  2017-03-22  View

Page 854 of 17672, showing 5 records out of 88360 total, starting on record 4266, ending on 4270

Actions