NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
28332  CVE-2015-7937  Stack-based buffer overflow in the GoAhead Web Server on Schneider Electric Modicon M340 PLC BMXNOx and BMXPx devices allows remote attackers to execute arbitrary code via a long password in HTTP Basic Authentication data.    10  High  2017-01-19  2016-11-28  View
28333  CVE-2015-7938  Advantech EKI-132x devices with firmware before 2015-12-31 allow remote attackers to bypass authentication via unspecified vectors.    10  High  2017-01-19  2016-01-18  View
28334  CVE-2015-7939  Heap-based buffer overflow in Unitronics VisiLogic OPLC IDE before 9.8.09 allows remote attackers to execute arbitrary code via a long vlp filename.    9.3  High  2017-01-19  2016-01-18  View
28335  CVE-2015-7940  The Bouncy Castle Java library before 1.51 does not validate a point is withing the elliptic curve, which makes it easier for remote attackers to obtain private keys via a series of crafted elliptic curve Diffie Hellman (ECDH) key exchanges, aka an "invalid curve attack."    Medium  2017-01-19  2016-12-07  View
28336  CVE-2015-7941  libxml2 2.9.2 does not properly stop parsing invalid input, which allows context-dependent attackers to cause a denial of service (out-of-bounds read and libxml2 crash) via crafted XML data to the (1) xmlParseEntityDecl or (2) xmlParseConditionalSections function in parser.c, as demonstrated by non-terminated entities.    4.3  Medium  2017-01-19  2016-12-07  View

Page 14996 of 17672, showing 5 records out of 88360 total, starting on record 74976, ending on 74980

Actions