NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
22746  CVE-2015-0259  OpenStack Compute (Nova) before 2014.1.4, 2014.2.x before 2014.2.3, and kilo before kilo-3 does not validate the origin of websocket requests, which allows remote attackers to hijack the authentication of users for access to consoles via a crafted webpage.    5.1  Medium  2017-01-19  2015-04-29  View
23002  CVE-2015-0528  The RPC daemon in EMC Isilon OneFS 6.5.x and 7.0.x before 7.0.2.13, 7.1.0 before 7.1.0.6, 7.1.1 before 7.1.1.2, and 7.2.0 before 7.2.0.1 allows local users to gain privileges by leveraging an ability to modify system files.    7.2  High  2017-01-19  2016-08-24  View
23258  CVE-2015-0819  The UITour::onPageEvent function in Mozilla Firefox before 36.0 does not ensure that an API call originates from a foreground tab, which allows remote attackers to conduct spoofing and clickjacking attacks by leveraging access to a UI Tour web site.    4.3  Medium  2017-01-19  2016-12-21  View
23514  CVE-2015-1128  The private-browsing implementation in Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5 allows attackers to obtain sensitive browsing-history information via vectors involving push-notification requests.    Medium  2017-01-19  2015-09-11  View
23770  CVE-2015-1456  Fortinet FortiAuthenticator 3.0.0 logs the PostgreSQL usernames and passwords in cleartext, which allows remote administrators to obtain sensitive information by reading the log at debug/startup/.    Medium  2017-01-19  2015-02-19  View

Page 14564 of 17672, showing 5 records out of 88360 total, starting on record 72816, ending on 72820

Actions