NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83985 | CVE-2016-8960 | IBM Cognos Business Intelligence 10.2 could allow a user with lower privilege Capabilities to adopt the Capabilities of a higher-privilege user by intercepting the higher-privilege user"s cookie value from its HTTP request and then reusing it in subsequent requests. IBM Reference #: 1993718. | 2 | 6.5 | Medium | 2017-03-29 | 2017-03-29 | View | |
83984 | CVE-2016-8887 | The jp2_colr_destroy function in libjasper/jp2/jp2_cod.c in JasPer before 1.900.10 allows remote attackers to cause a denial of service (NULL pointer dereference). | 2 | 4.3 | Medium | 2017-03-29 | 2017-03-27 | View | |
83983 | CVE-2016-8886 | The jas_malloc function in libjasper/base/jas_malloc.c in JasPer before 1.900.11 allows remote attackers to have unspecified impact via a crafted file, which triggers a memory allocation failure. | 2 | 6.8 | Medium | 2017-03-29 | 2017-03-27 | View | |
83982 | CVE-2016-8885 | The bmp_getdata function in libjasper/bmp/bmp_dec.c in JasPer before 1.900.9 allows remote attackers to cause a denial of service (NULL pointer dereference) by calling the imginfo command with a crafted BMP image. | 2 | 4.3 | Medium | 2017-03-29 | 2017-03-24 | View | |
83981 | CVE-2016-8884 | The bmp_getdata function in libjasper/bmp/bmp_dec.c in JasPer 1.900.5 allows remote attackers to cause a denial of service (NULL pointer dereference) by calling the imginfo command with a crafted BMP image. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-8690. | 2017-03-29 | 2017-03-28 | View |
Page 876 of 17672, showing 5 records out of 88360 total, starting on record 4376, ending on 4380