NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
25828  CVE-2015-4370  Cross-site scripting (XSS) vulnerability in the Site Documentation module before 6.x-1.5 for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via vectors related to taxonomy terms.    3.5  Low  2017-01-19  2015-06-26  View
26084  CVE-2015-4762  Unspecified vulnerability in the Oracle Applications DBA component in Oracle E-Business Suite 12.2.3 and 12.2.4 allows remote authenticated users to affect confidentiality via unknown vectors related to Online patching.    Medium  2017-01-19  2016-12-23  View
26340  CVE-2015-5074  Incomplete blacklist vulnerability in the FileUploadsFilter class in protected/components/filters/FileUploadsFilter.php in X2Engine X2CRM before 5.0.9 allows remote authenticated users to execute arbitrary PHP code by uploading a file with a .pht extension.    7.5  High  2017-01-19  2016-12-07  View
26596  CVE-2015-5442  Unspecified vulnerability in HP Software Update before 5.005.002.002 allows local users to gain privileges via unknown vectors.    4.6  Medium  2017-01-19  2016-12-07  View
26852  CVE-2015-5788  The WebKit Canvas implementation in Apple iOS before 9 allows remote attackers to bypass the Same Origin Policy and obtain sensitive image information via vectors involving a CANVAS element.    4.3  Medium  2017-01-19  2016-12-21  View

Page 14761 of 17672, showing 5 records out of 88360 total, starting on record 73801, ending on 73805

Actions