NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
24608 | CVE-2015-2587 | Unspecified vulnerability in the Siebel UI Framework component in Oracle Siebel CRM 8.1.1, 8.2.2, and 15.0 allows remote attackers to affect integrity via vectors related to SWSE Server Infrastructure. | 2 | 4.3 | Medium | 2017-01-19 | 2015-07-17 | View | |
24864 | CVE-2015-2902 | HP ArcSight SmartConnectors before 7.1.6 do not verify X.509 certificates from Logger devices, which allows man-in-the-middle attackers to spoof devices and obtain sensitive information via a crafted certificate. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-07 | View | |
25376 | CVE-2015-3729 | Apple Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, as used in iOS before 8.4.1 and other products, does not indicate what web site originated an input prompt, which allows remote attackers to conduct spoofing attacks via a crafted site. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-23 | View | |
25632 | CVE-2015-4141 | The WPS UPnP function in hostapd, when using WPS AP, and wpa_supplicant, when using WPS external registrar (ER), 0.7.0 through 2.4 allows remote attackers to cause a denial of service (crash) via a negative chunk length, which triggers an out-of-bounds read or heap-based buffer overflow. | 2 | 4.3 | Medium | 2017-01-19 | 2016-08-16 | View | |
25888 | CVE-2015-4460 | Cross-site request forgery (CSRF) vulnerability in SecuritySetting/UserSecurity/UserManagement.aspx in B.A.S C2Box before 4.0.0 (r19171) allows remote attackers to hijack the authentication of administrators for requests that add administrator accounts via certain vectors. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-07 | View |
Page 1173 of 17672, showing 5 records out of 88360 total, starting on record 5861, ending on 5865