NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
24351 | CVE-2015-2248 | Cross-site request forgery (CSRF) vulnerability in the user portal in Dell SonicWALL Secure Remote Access (SRA) products with firmware before 7.5.1.0-38sv and 8.x before 8.0.0.1-16sv allows remote attackers to hijack the authentication of users for requests that create bookmarks via a crafted request to cgi-bin/editBookmark. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-02 | View | |
24607 | CVE-2015-2586 | Unspecified vulnerability in the Application Express component in Oracle Database Server before 4.2.1 allows remote attackers to affect availability via unknown vectors. | 2 | 4.3 | Medium | 2017-01-19 | 2015-07-17 | View | |
24863 | CVE-2015-2901 | Multiple stack-based buffer overflows in Medicomp MEDCIN Engine 2.22.20142.166 might allow remote attackers to execute arbitrary code via a crafted packet on port 8190, related to (1) the GetProperty info_getproperty function and (2) the GetProperty UdfCodeList function. | 2 | 6.8 | Medium | 2017-01-19 | 2015-10-29 | View | |
25119 | CVE-2015-3228 | Integer overflow in the gs_heap_alloc_bytes function in base/gsmalloc.c in Ghostscript 9.15 and earlier allows remote attackers to cause a denial of service (crash) via a crafted Postscript (ps) file, as demonstrated by using the ps2pdf command, which triggers an out-of-bounds read or write. | 2 | 6.8 | Medium | 2017-01-19 | 2016-11-28 | View | |
25375 | CVE-2015-3728 | The WiFi Connectivity feature in Apple iOS before 8.4 allows remote Wi-Fi access points to trigger an automatic association, with an arbitrary security type, by operating with a recognized ESSID within an 802.11 network"s coverage area. | 2 | 4.8 | Medium | 2017-01-19 | 2016-12-27 | View |
Page 1138 of 17672, showing 5 records out of 88360 total, starting on record 5686, ending on 5690