NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83960 | CVE-2016-5750 | The certificate upload feature in iManager in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 could be used to upload JSP pages that would be executed as the iManager user, allowing code execution by logged-in remote users. | 2 | 6.5 | Medium | 2017-03-29 | 2017-03-24 | View | |
83959 | CVE-2016-5749 | NetIQ Access Manager 4.1 before 4.1.2 HF 1 and 4.2 before 4.2.2 was parsing incoming SAML requests with external entity resolution enabled, which could lead to local file disclosure via an XML External Entity (XXE) attack. | 2 | 2.1 | Low | 2017-03-29 | 2017-03-24 | View | |
83958 | CVE-2016-5748 | External Entity Processing (XXE) vulnerability in the "risk score" application of NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 could be used to disclose the content of local files to logged-in users. | 2 | 2.1 | Low | 2017-03-29 | 2017-03-24 | View | |
83957 | CVE-2016-5747 | A security vulnerability in cookie handling in the http stack implementation in NDSD in Novell eDirectory before 9.0.1 allows remote attackers to bypass intended access restrictions by leveraging predictable cookies. | 2 | 5 | Medium | 2017-03-29 | 2017-03-27 | View | |
83956 | CVE-2016-4976 | Apache Ambari 2.x before 2.4.0 includes KDC administrator passwords on the kadmin command line, which allows local users to obtain sensitive information via a process listing. | 2017-03-29 | 2017-03-29 | View |
Page 881 of 17672, showing 5 records out of 88360 total, starting on record 4401, ending on 4405