NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 23511 | CVE-2015-1125 | The touch-events implementation in WebKit in Apple iOS before 8.3 allows remote attackers to trigger an association between a tap and an unintended web resource via a crafted web site. | 2 | 4.3 | Medium | 2017-01-19 | 2015-09-11 | View | |
| 23767 | CVE-2015-1453 | The qm class in Fortinet FortiClient 5.2.3.091 for Android uses a hardcoded encryption key of FoRtInEt!AnDrOiD, which makes it easier for attackers to obtain passwords and possibly other sensitive data by leveraging the key to decrypt data in the Shared Preferences. | 2 | 5 | Medium | 2017-01-19 | 2015-11-30 | View | |
| 24023 | CVE-2015-1776 | Apache Hadoop 2.6.x encrypts intermediate data generated by a MapReduce job and stores it along with the encryption key in a credentials file on disk when the Intermediate data encryption feature is enabled, which allows local users to obtain sensitive information by reading the file. | 2 | 2.1 | Low | 2017-01-19 | 2016-11-28 | View | |
| 24279 | CVE-2015-2121 | HP Network Virtualization for LoadRunner and Performance Center 8.61 and 11.52 allows remote attackers to read arbitrary files via a crafted filename in a URL to the (1) HttpServlet or (2) NetworkEditorController component, aka ZDI-CAN-2569. | 2 | 7.8 | High | 2017-01-19 | 2016-12-02 | View | |
| 24535 | CVE-2015-2504 | Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4, 4.5, 4.5.1, 4.5.2, and 4.6 improperly counts objects before performing an array copy, which allows remote attackers to (1) execute arbitrary code via a crafted XAML browser application (XBAP) or (2) bypass Code Access Security restrictions via a crafted .NET Framework application, aka ".NET Elevation of Privilege Vulnerability." | 2 | 9.3 | High | 2017-01-19 | 2016-12-21 | View |
Page 14567 of 17672, showing 5 records out of 88360 total, starting on record 72831, ending on 72835