NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 25298 | CVE-2015-3632 | Foxit Reader, Enterprise Reader, and PhantomPDF before 7.1.5 allow remote attackers to cause a denial of service (memory corruption and crash) via a crafted GIF in a PDF file. | 2 | 4.3 | Medium | 2017-01-19 | 2017-01-02 | View | |
| 25554 | CVE-2015-3982 | The session.flush function in the cached_db backend in Django 1.8.x before 1.8.2 does not properly flush the session, which allows remote attackers to hijack user sessions via an empty string in the session key. | 2 | 5 | Medium | 2017-01-19 | 2016-12-05 | View | |
| 25810 | CVE-2015-4352 | Cross-site request forgery (CSRF) vulnerability in the Spider Video Player module for Drupal allows remote attackers to hijack the authentication of administrators for requests that delete videos via unspecified vectors. | 2 | 5.8 | Medium | 2017-01-19 | 2016-06-09 | View | |
| 26066 | CVE-2015-4744 | Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Fusion Middleware 2.1.1, 3.0.1, and 3.1.2; and the Oracle WebLogic Server component in Oracle Fusion Middleware 10.3.6.0, 12.1.1.0, 12.1.2.0, and 12.1.3.0 allows remote attackers to affect integrity via unknown vectors related to Java Server Faces. | 2 | 2.6 | Low | 2017-01-19 | 2016-12-28 | View | |
| 26322 | CVE-2015-5041 | The J9 JVM in IBM SDK, Java Technology Edition 6 before SR16 FP20, 6 R1 before SR8 FP20, 7 before SR9 FP30, and 7 R1 before SR3 FP30 allows remote attackers to obtain sensitive information or inject data by invoking non-public interface methods. | 2 | 6.4 | Medium | 2017-01-19 | 2016-11-28 | View |
Page 14578 of 17672, showing 5 records out of 88360 total, starting on record 72886, ending on 72890