NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
84095 | CVE-2016-6816 | The code in Apache Tomcat 9.0.0.M1 to 9.0.0.M11, 8.5.0 to 8.5.6, 8.0.0.RC1 to 8.0.38, 7.0.0 to 7.0.72, and 6.0.0 to 6.0.47 that parsed the HTTP request line permitted invalid characters. This could be exploited, in conjunction with a proxy that also permitted the invalid characters but with a different interpretation, to inject data into the HTTP response. By manipulating the HTTP response the attacker could poison a web-cache, perform an XSS attack and/or obtain sensitive information from requests other then their own. | 2 | 6.8 | Medium | 2017-03-29 | 2017-03-24 | View | |
84094 | CVE-2016-5857 | The Qualcomm SPCom driver in Android before 7.0 allows local users to execute arbitrary code within the context of the kernel via a crafted application, aka Android internal bug 34386529 and Qualcomm internal bug CR#1094140. | 2 | 6.9 | Medium | 2017-03-29 | 2017-03-23 | View | |
84093 | CVE-2016-4931 | XML entity injection in Junos Space before 15.2R2 allows attackers to cause a denial of service. | 2 | 4 | Medium | 2017-03-29 | 2017-03-22 | View | |
84092 | CVE-2016-4930 | Cross-site scripting (XSS) vulnerability in Junos Space before 15.2R2 allows remote attackers to steal sensitive information or perform certain administrative actions. | 2 | 4.3 | Medium | 2017-03-29 | 2017-03-22 | View | |
84091 | CVE-2016-4929 | Command injection vulnerability in Junos Space before 15.2R2 allows attackers to execute arbitrary code as a root user. | 2 | 9 | High | 2017-03-29 | 2017-03-22 | View |
Page 854 of 17672, showing 5 records out of 88360 total, starting on record 4266, ending on 4270