NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 27374 | CVE-2015-6463 | CodeWrights HART Comm DTM components, as used with Endress+Hauser FieldCare, allow remote attackers to read arbitrary files, send HTTP requests to intranet servers, or cause a denial of service (CPU and memory consumption) via a longtag XML schema containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. | 2 | 5.8 | Medium | 2017-01-19 | 2015-09-29 | View | |
| 27375 | CVE-2015-6464 | The administrative web interface on Moxa EDS-405A and EDS-408A switches with firmware before 3.6 allows remote authenticated users to bypass a read-only protection mechanism by using Firefox with a web-developer plugin. | 2 | 8.5 | High | 2017-01-19 | 2015-09-14 | View | |
| 27376 | CVE-2015-6465 | The GoAhead web server on Moxa EDS-405A and EDS-408A switches with firmware before 3.6 allows remote authenticated users to cause a denial of service (reboot) via a crafted URL. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-21 | View | |
| 27377 | CVE-2015-6466 | Cross-site scripting (XSS) vulnerability in the Diagnosis Ping feature in the administrative web interface on Moxa EDS-405A and EDS-408A switches with firmware before 3.6 allows remote attackers to inject arbitrary web script or HTML via an unspecified field. | 2 | 4.3 | Medium | 2017-01-19 | 2015-09-14 | View | |
| 27378 | CVE-2015-6467 | Advantech WebAccess before 8.1 allows remote attackers to execute arbitrary code via vectors involving a browser plugin. | 2 | 9.3 | High | 2017-01-19 | 2016-01-20 | View |
Page 14796 of 17672, showing 5 records out of 88360 total, starting on record 73976, ending on 73980