NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 28332 | CVE-2015-7937 | Stack-based buffer overflow in the GoAhead Web Server on Schneider Electric Modicon M340 PLC BMXNOx and BMXPx devices allows remote attackers to execute arbitrary code via a long password in HTTP Basic Authentication data. | 2 | 10 | High | 2017-01-19 | 2016-11-28 | View | |
| 28333 | CVE-2015-7938 | Advantech EKI-132x devices with firmware before 2015-12-31 allow remote attackers to bypass authentication via unspecified vectors. | 2 | 10 | High | 2017-01-19 | 2016-01-18 | View | |
| 28334 | CVE-2015-7939 | Heap-based buffer overflow in Unitronics VisiLogic OPLC IDE before 9.8.09 allows remote attackers to execute arbitrary code via a long vlp filename. | 2 | 9.3 | High | 2017-01-19 | 2016-01-18 | View | |
| 28335 | CVE-2015-7940 | The Bouncy Castle Java library before 1.51 does not validate a point is withing the elliptic curve, which makes it easier for remote attackers to obtain private keys via a series of crafted elliptic curve Diffie Hellman (ECDH) key exchanges, aka an "invalid curve attack." | 2 | 5 | Medium | 2017-01-19 | 2016-12-07 | View | |
| 28336 | CVE-2015-7941 | libxml2 2.9.2 does not properly stop parsing invalid input, which allows context-dependent attackers to cause a denial of service (out-of-bounds read and libxml2 crash) via crafted XML data to the (1) xmlParseEntityDecl or (2) xmlParseConditionalSections function in parser.c, as demonstrated by non-terminated entities. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-07 | View |
Page 14996 of 17672, showing 5 records out of 88360 total, starting on record 74976, ending on 74980