NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 24489 | CVE-2015-2453 | The Client/Server Run-time Subsystem (CSRSS) in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to obtain sensitive information via a crafted application that continues to execute during a subsequent user"s login session, aka "Windows CSRSS Elevation of Privilege Vulnerability." | 2 | 4.7 | Medium | 2017-01-19 | 2015-08-17 | View | |
| 24745 | CVE-2015-2744 | Cross-site scripting (XSS) vulnerability in the Search app in Gaia in Mozilla Firefox OS before 2.2 allows remote attackers to inject arbitrary HTML via a crafted search link that is mishandled after re-opening the browser or opening the tab view. | 2 | 4.3 | Medium | 2017-01-19 | 2015-08-10 | View | |
| 25769 | CVE-2015-4299 | Cisco Unified Web and E-Mail Interaction Manager 9.0(2) improperly performs authorization, which allows remote authenticated users to remove default messaging-queue system folders via unspecified vectors, aka Bug ID CSCuo89046. | 2 | 5.5 | Medium | 2017-01-19 | 2016-12-28 | View | |
| 26025 | CVE-2015-4661 | Cross-site scripting (XSS) vulnerability in Symphony CMS 2.6.2 allows remote attackers to inject arbitrary web script or HTML via the sort parameter to system/authors. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View | |
| 26281 | CVE-2015-4973 | Cross-site scripting (XSS) vulnerability in IBM Multi-Enterprise Integration Gateway 1.x through 1.0.0.1 and B2B Advanced Communications 1.0.0.2 and 1.0.0.3 before 1.0.0.3_2 allows remote attackers to inject arbitrary web script or HTML via a crafted URL. | 2 | 4.3 | Medium | 2017-01-19 | 2015-10-07 | View |
Page 14608 of 17672, showing 5 records out of 88360 total, starting on record 73036, ending on 73040