NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 25518 | CVE-2015-3923 | Coppermine Photo Gallery before 1.5.36 allows remote attackers to enumerate directories via a full path in the folder parameter to minibrowser.php. | 2 | 5 | Medium | 2017-01-19 | 2016-12-30 | View | |
| 25774 | CVE-2015-4305 | The web framework in Cisco Prime Collaboration Assurance before 10.5.1.53684-1 allows remote authenticated users to bypass intended system-database read restrictions, and discover credentials or SNMP communities for arbitrary tenant domains, via a crafted URL, aka Bug ID CSCus62656. | 2 | 4 | Medium | 2017-01-19 | 2017-01-04 | View | |
| 26286 | CVE-2015-4989 | The portal in IBM Tealeaf Customer Experience before 8.7.1.8814, 8.8 before 8.8.0.9026, 9.0.0, 9.0.0A, 9.0.1 before 9.0.1.1083, 9.0.1A before 9.0.1.5073, 9.0.2 before 9.0.2.1095, and 9.0.2A before 9.0.2.5144 allows remote attackers to read arbitrary charts by specifying an internal chart name. | 2 | 5 | Medium | 2017-01-19 | 2016-01-06 | View | |
| 27310 | CVE-2015-6374 | The web interface in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices does not properly restrict use of IFRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks and unspecified other attacks via a crafted web site, aka Bug ID CSCux10604. | 2 | 4.3 | Medium | 2017-01-19 | 2015-11-19 | View | |
| 28078 | CVE-2015-7518 | Multiple cross-site scripting (XSS) vulnerabilities in information popups in Foreman before 1.10.0 allow remote attackers to inject arbitrary web script or HTML via (1) global parameters, (2) smart class parameters, or (3) smart variables in the (a) host or (b) hostgroup edit forms. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-02 | View |
Page 14782 of 17672, showing 5 records out of 88360 total, starting on record 73906, ending on 73910