NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 24944 | CVE-2015-2999 | Multiple SQL injection vulnerabilities in SysAid Help Desk before 15.2 allow remote administrators to execute arbitrary SQL commands via the (1) groupFilter parameter in an AssetDetails report to /genericreport, customSQL parameter in a (2) TopAdministratorsByAverageTimer report or an (3) ActiveRequests report to /genericreport, (4) dir parameter to HelpDesk.jsp, or (5) grantSQL parameter to RFCGantt.jsp. | 2 | 6.5 | Medium | 2017-01-19 | 2016-12-30 | View | |
| 25200 | CVE-2015-3345 | SQL injection vulnerability in the PHPlist Integration Module before 6.x-1.7 for Drupal allows remote administrators to execute arbitrary SQL commands via unspecified vectors, related to the "phpList database." | 2 | 6.5 | Medium | 2017-01-19 | 2016-12-30 | View | |
| 25456 | CVE-2015-3809 | The dissect_lbmr_pser function in epan/dissectors/packet-lbmr.c in the LBMR dissector in Wireshark 1.12.x before 1.12.5 does not properly track the current offset, which allows remote attackers to cause a denial of service (infinite loop) via a crafted packet. | 2 | 7.8 | High | 2017-01-19 | 2016-12-30 | View | |
| 24945 | CVE-2015-3000 | SysAid Help Desk before 15.2 allows remote attackers to cause a denial of service (CPU and memory consumption) via a large number of nested entity references in an XML document to (1) /agententry, (2) /rdsmonitoringresponse, or (3) /androidactions, aka an XML Entity Expansion (XEE) attack. | 2 | 7.8 | High | 2017-01-19 | 2016-12-30 | View | |
| 25457 | CVE-2015-3810 | epan/dissectors/packet-websocket.c in the WebSocket dissector in Wireshark 1.12.x before 1.12.5 uses a recursive algorithm, which allows remote attackers to cause a denial of service (CPU consumption) via a crafted packet. | 2 | 7.8 | High | 2017-01-19 | 2016-12-30 | View |
Page 14725 of 17672, showing 5 records out of 88360 total, starting on record 73621, ending on 73625