NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
27663 | CVE-2015-6845 | EMC SourceOne Email Supervisor before 7.2 does not properly employ random values for session IDs, which makes it easier for remote attackers to obtain access by guessing an ID. | 2 | 7.5 | High | 2017-01-19 | 2016-12-08 | View | |
27919 | CVE-2015-7236 | Use-after-free vulnerability in xprt_set_caller in rpcb_svc_com.c in rpcbind 0.2.1 and earlier allows remote attackers to cause a denial of service (daemon crash) via crafted packets, involving a PMAP_CALLIT code. | 2 | 5 | Medium | 2017-01-19 | 2016-12-07 | View | |
28175 | CVE-2015-7680 | Ipswitch MOVEit DMZ before 8.2 provides different error messages for authentication attempts depending on whether the user account exists, which allows remote attackers to enumerate usernames via a series of SOAP requests to machine.aspx. | 2 | 5 | Medium | 2017-01-19 | 2016-02-18 | View | |
28431 | CVE-2015-8090 | The Web Server component in TIBCO LogLogic Unity before 1.1.1 allows remote authenticated users to gain privileges, and consequently obtain sensitive information, via an HTTP request. | 2 | 4 | Medium | 2017-01-19 | 2015-11-19 | View | |
28687 | CVE-2015-8570 | The password reset functionality in Lepide Active Directory Self Service allows remote authenticated users to change arbitrary domain user passwords via a crafted request. | 2 | 7.4 | High | 2017-01-19 | 2016-11-28 | View |
Page 1059 of 17672, showing 5 records out of 88360 total, starting on record 5291, ending on 5295