NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 26415 | CVE-2015-5178 | The Management Console in Red Hat Enterprise Application Platform before 6.4.4 and WildFly (formerly JBoss Application Server) does not send an X-Frame-Options HTTP header, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web page that contains a (1) FRAME or (2) IFRAME element. | 2 | 4.3 | Medium | 2017-01-19 | 2015-10-28 | View | |
| 87461 | CVE-2015-5180 | res_query in libresolv in glibc before 2.25 allows remote attackers to cause a denial of service (NULL pointer dereference and process crash). | 2017-06-28 | 2017-06-27 | View | ||||
| 26416 | CVE-2015-5185 | The lookupProviders function in providerMgr.c in sblim-sfcb 1.3.4 and 1.3.18 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via an empty className in a packet. | 2 | 5 | Medium | 2017-01-19 | 2016-12-07 | View | |
| 26417 | CVE-2015-5188 | Cross-site request forgery (CSRF) vulnerability in the Web Console (web-console) in Red Hat Enterprise Application Platform before 6.4.4 and WildFly (formerly JBoss Application Server) before 2.0.0.CR9 allows remote attackers to hijack the authentication of administrators for requests that make arbitrary changes to an instance via vectors involving a file upload using a multipart/form-data submission. | 2 | 6.8 | Medium | 2017-01-19 | 2015-10-28 | View | |
| 26418 | CVE-2015-5189 | Race condition in pcsd in PCS 0.9.139 and earlier uses a global variable to validate usernames, which allows remote authenticated users to gain privileges by sending a command that is checked for security after another user is authenticated. | 2 | 4.9 | Medium | 2017-01-19 | 2015-09-04 | View |
Page 14600 of 17672, showing 5 records out of 88360 total, starting on record 72996, ending on 73000