NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
25894 | CVE-2015-4471 | Off-by-one error in the lzxd_decompress function in lzxd.c in libmspack before 0.5 allows remote attackers to cause a denial of service (buffer under-read and application crash) via a crafted CAB archive. | 2 | 4.3 | Medium | 2017-01-19 | 2016-06-09 | View | |
26406 | CVE-2015-5158 | Stack-based buffer overflow in hw/scsi/scsi-bus.c in QEMU, when built with SCSI-device emulation support, allows guest OS users with CAP_SYS_RAWIO permissions to cause a denial of service (instance crash) via an invalid opcode in a SCSI command descriptor block. | 2 | 4.3 | Medium | 2017-01-19 | 2016-04-14 | View | |
26662 | CVE-2015-5529 | Multiple cross-site scripting (XSS) vulnerabilities in Free Reprintables ArticleFR 3.0.6 allow remote attackers to inject arbitrary web script or HTML via the (1) name parameter to dashboard/settings/categories/, (2) title or (3) rel parameter to dashboard/settings/links/, or (4) url parameter to dashboard/tools/pingservers/. | 2 | 4.3 | Medium | 2017-01-19 | 2015-07-21 | View | |
26918 | CVE-2015-5855 | Apple iOS before 9 allows attackers to discover the e-mail address of a player via a crafted Game Center app. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-21 | View | |
27942 | CVE-2015-7284 | Cross-site request forgery (CSRF) vulnerability on ZyXEL NBG-418N devices with firmware 1.00(AADZ.3)C0 allows remote attackers to hijack the authentication of arbitrary users. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-07 | View |
Page 1398 of 17672, showing 5 records out of 88360 total, starting on record 6986, ending on 6990