NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
23075  CVE-2015-0611  The administrative web-management portal in Cisco IX 8 (.0.1) and earlier on Cisco TelePresence IX5000 devices does not properly restrict the device-recovery account"s access, which allows remote authenticated users to obtain HelpDesk-equivalent privileges by leveraging device-recovery authentication, aka Bug ID CSCus74174.    6.5  Medium  2017-01-19  2015-10-30  View
23331  CVE-2015-0907  Buffer overflow in Lhaplus before 1.70 allows remote attackers to execute arbitrary code via a crafted archive.    6.8  Medium  2017-01-19  2015-04-15  View
23587  CVE-2015-1225  PDFium, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.    Medium  2017-01-19  2016-12-21  View
23843  CVE-2015-1570  The Endpoint Control protocol implementation in Fortinet FortiClient 5.2.3.091 for Android and 5.2.028 for iOS does not validate certificates, which makes it easier for man-in-the-middle attackers to spoof servers via a crafted certificate.    4.3  Medium  2017-01-19  2015-02-11  View
24355  CVE-2015-2266  message/index.php in Moodle through 2.5.9, 2.6.x before 2.6.9, 2.7.x before 2.7.6, and 2.8.x before 2.8.4 does not consider the moodle/site:readallmessages capability before accessing arbitrary conversations, which allows remote authenticated users to obtain sensitive personal-contact and unread-message-count information via a modified URL.    Medium  2017-01-19  2015-06-02  View

Page 1288 of 17672, showing 5 records out of 88360 total, starting on record 6436, ending on 6440

Actions