NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
23075 | CVE-2015-0611 | The administrative web-management portal in Cisco IX 8 (.0.1) and earlier on Cisco TelePresence IX5000 devices does not properly restrict the device-recovery account"s access, which allows remote authenticated users to obtain HelpDesk-equivalent privileges by leveraging device-recovery authentication, aka Bug ID CSCus74174. | 2 | 6.5 | Medium | 2017-01-19 | 2015-10-30 | View | |
23331 | CVE-2015-0907 | Buffer overflow in Lhaplus before 1.70 allows remote attackers to execute arbitrary code via a crafted archive. | 2 | 6.8 | Medium | 2017-01-19 | 2015-04-15 | View | |
23587 | CVE-2015-1225 | PDFium, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2016-12-21 | View | |
23843 | CVE-2015-1570 | The Endpoint Control protocol implementation in Fortinet FortiClient 5.2.3.091 for Android and 5.2.028 for iOS does not validate certificates, which makes it easier for man-in-the-middle attackers to spoof servers via a crafted certificate. | 2 | 4.3 | Medium | 2017-01-19 | 2015-02-11 | View | |
24355 | CVE-2015-2266 | message/index.php in Moodle through 2.5.9, 2.6.x before 2.6.9, 2.7.x before 2.7.6, and 2.8.x before 2.8.4 does not consider the moodle/site:readallmessages capability before accessing arbitrary conversations, which allows remote authenticated users to obtain sensitive personal-contact and unread-message-count information via a modified URL. | 2 | 4 | Medium | 2017-01-19 | 2015-06-02 | View |
Page 1288 of 17672, showing 5 records out of 88360 total, starting on record 6436, ending on 6440