NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 42097 | CVE-2013-7375 | SQL injection vulnerability in includes/classes/Authenticate.class.php in PHP-Fusion 7.02.01 through 7.02.05 allows remote attackers to execute arbitrary SQL commands via the user ID in a user cookie, a different vulnerability than CVE-2013-1803. | 2 | 7.5 | High | 2017-01-18 | 2016-12-30 | View | |
| 24178 | CVE-2015-1986 | The server in IBM Tivoli Storage Manager FastBack 6.1 before 6.1.12 allows remote attackers to execute arbitrary commands via unspecified vectors, a different vulnerability than CVE-2015-1938. | 2 | 10 | High | 2017-01-19 | 2016-12-30 | View | |
| 24946 | CVE-2015-3001 | SysAid Help Desk before 15.2 uses a hardcoded password of Password1 for the sa SQL Server Express user account, which allows remote authenticated users to bypass intended access restrictions by leveraging knowledge of this password. | 2 | 5 | Medium | 2017-01-19 | 2016-12-30 | View | |
| 25458 | CVE-2015-3811 | epan/dissectors/packet-wcp.c in the WCP dissector in Wireshark 1.10.x before 1.10.14 and 1.12.x before 1.12.5 improperly refers to previously processed bytes, which allows remote attackers to cause a denial of service (application crash) via a crafted packet, a different vulnerability than CVE-2015-2188. | 2 | 5 | Medium | 2017-01-19 | 2016-12-30 | View | |
| 25459 | CVE-2015-3812 | Multiple memory leaks in the x11_init_protocol function in epan/dissectors/packet-x11.c in the X11 dissector in Wireshark 1.10.x before 1.10.14 and 1.12.x before 1.12.5 allow remote attackers to cause a denial of service (memory consumption) via a crafted packet. | 2 | 7.8 | High | 2017-01-19 | 2016-12-30 | View |
Page 14726 of 17672, showing 5 records out of 88360 total, starting on record 73626, ending on 73630