NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
27516  CVE-2015-6665  Cross-site scripting (XSS) vulnerability in the Ajax handler in Drupal 7.x before 7.39 and the Ctools module 6.x-1.x before 6.x-1.14 for Drupal allows remote attackers to inject arbitrary web script or HTML via vectors involving a whitelisted HTML element, possibly related to the "a" tag.    4.3  Medium  2017-01-19  2016-12-23  View
28284  CVE-2015-7862  Persistent Accelerite Radia Client Automation (formerly HP Client Automation) 7.9 through 9.1 before 2015-02-19 improperly implements the Role Based Access Control feature, which might allow remote attackers to modify an account"s role assignments via unspecified vectors.    Medium  2017-01-19  2016-12-23  View
28285  CVE-2015-7863  The default configuration of Persistent Accelerite Radia Client Automation (formerly HP Client Automation) 7.9 through 9.1 before 2015-02-19 enables a remote Notify capability without the Extended Notify Security features, which might allow remote attackers to bypass intended access restrictions via unspecified vectors.    Medium  2017-01-19  2016-12-23  View
27774  CVE-2015-7030  The Swift implementation in Apple Xcode before 7.1 mishandles type conversion, which has unspecified impact and attack vectors.    7.5  High  2017-01-19  2016-12-23  View
27775  CVE-2015-7031  The Web Service component in Apple OS X Server before 5.0.15 omits an unspecified HTTP header configuration, which allows remote attackers to bypass intended access restrictions via unknown vectors.    Medium  2017-01-19  2016-12-23  View

Page 14590 of 17672, showing 5 records out of 88360 total, starting on record 72946, ending on 72950

Actions