NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
24077 | CVE-2015-1863 | Heap-based buffer overflow in wpa_supplicant 1.0 through 2.4 allows remote attackers to cause a denial of service (crash), read memory, or possibly execute arbitrary code via crafted SSID information in a management frame when creating or updating P2P entries. | 2 | 5.8 | Medium | 2017-01-19 | 2017-01-02 | View | |
24333 | CVE-2015-2217 | Multiple cross-site scripting (XSS) vulnerabilities in Ultimate PHP Board (aka myUPB) before 2.2.8 allow remote attackers to inject arbitrary web script or HTML via the (1) q parameter to search.php or (2) avatar parameter to profile.php. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-17 | View | |
24589 | CVE-2015-2567 | Unspecified vulnerability in Oracle MySQL Server 5.6.23 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : Security : Privileges. | 2 | 3.5 | Low | 2017-01-19 | 2017-01-03 | View | |
24845 | CVE-2015-2867 | A design flaw in the Trane ComfortLink II SCC firmware version 2.0.2 service allows remote attackers to take complete control of the system. | 2 | 10 | High | 2017-01-19 | 2017-01-10 | View | |
25101 | CVE-2015-3203 | Unrestricted file upload vulnerability in h5ai before 0.25.0 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in the directory specified by the href parameter. | 2 | 7.5 | High | 2017-01-19 | 2015-09-29 | View |
Page 1270 of 17672, showing 5 records out of 88360 total, starting on record 6346, ending on 6350