NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
24332 | CVE-2015-2216 | SQL injection vulnerability in ecomm-sizes.php in the Photocrati theme 4.x for WordPress allows remote attackers to execute arbitrary SQL commands via the prod_id parameter. | 2 | 7.5 | High | 2017-01-19 | 2016-12-02 | View | |
24588 | CVE-2015-2566 | Unspecified vulnerability in Oracle MySQL Server 5.6.22 and earlier allows remote authenticated users to affect availability via vectors related to DML. | 2 | 2.8 | Low | 2017-01-19 | 2017-01-03 | View | |
24844 | CVE-2015-2866 | SQL injection vulnerability on the Grandstream GXV3611_HD camera with firmware before 1.0.3.9 beta allows remote attackers to execute arbitrary SQL commands by attempting to establish a TELNET session with a crafted username. | 2 | 7.5 | High | 2017-01-19 | 2015-07-09 | View | |
25100 | CVE-2015-3202 | fusermount in FUSE before 2.9.3-15 does not properly clear the environment before invoking (1) mount or (2) umount as root, which allows local users to write to arbitrary files via a crafted LIBMOUNT_MTAB environment variable that is used by mount"s debugging feature. | 2 | 3.6 | Low | 2017-01-19 | 2016-12-27 | View | |
25356 | CVE-2015-3709 | Race condition in kext tools in Apple OS X before 10.10.4 allows local users to bypass intended signature requirements for kernel extensions by leveraging improper pathname validation. | 2 | 6.9 | Medium | 2017-01-19 | 2016-11-28 | View |
Page 1203 of 17672, showing 5 records out of 88360 total, starting on record 6011, ending on 6015