NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 22704 | CVE-2015-0201 | The Java SockJS client in Pivotal Spring Framework 4.1.x before 4.1.5 generates predictable session ids, which allows remote attackers to send messages to other sessions via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2015-03-11 | View | |
| 88240 | CVE-2017-9878 | IrfanView version 4.44 (32bit) with FPX Plugin 4.46 allows attackers to execute arbitrary code or cause a denial of service via a crafted .fpx file, related to a Read Access Violation on Control Flow starting at FPX!FPX_GetScanDevicePropertyGroup+0x000000000000c99a. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-11 | View | |
| 23216 | CVE-2015-0762 | Cross-site scripting (XSS) vulnerability in the management interface in Cisco Unified MeetingPlace 8.6(1.2) and 8.6(1.9) for Microsoft Outlook allows remote attackers to inject arbitrary web script or HTML via a crafted value in a URL, aka Bug ID CSCuu51400. | 2 | 4.3 | Medium | 2017-01-19 | 2017-01-04 | View | |
| 23472 | CVE-2015-1086 | The Audio Drivers subsystem in Apple iOS before 8.3 and Apple TV before 7.2 does not properly validate IOKit object metadata, which allows attackers to execute arbitrary code in a privileged context via a crafted app. | 2 | 6.9 | Medium | 2017-01-19 | 2015-09-30 | View | |
| 23728 | CVE-2015-1385 | Cross-site scripting (XSS) vulnerability in the Blubrry PowerPress Podcasting plugin before 6.0.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the cat parameter in a powerpress-editcategoryfeed action in the powerpressadmin_categoryfeeds.php page to wp-admin/admin.php. | 2 | 4.3 | Medium | 2017-01-19 | 2015-02-04 | View |
Page 14853 of 17672, showing 5 records out of 88360 total, starting on record 74261, ending on 74265