NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 22746 | CVE-2015-0259 | OpenStack Compute (Nova) before 2014.1.4, 2014.2.x before 2014.2.3, and kilo before kilo-3 does not validate the origin of websocket requests, which allows remote attackers to hijack the authentication of users for access to consoles via a crafted webpage. | 2 | 5.1 | Medium | 2017-01-19 | 2015-04-29 | View | |
| 88282 | CVE-2017-9920 | IrfanView version 4.44 (32bit) with TOOLS Plugin 4.50 might allow attackers to cause a denial of service or execute arbitrary code via a crafted file, related to Data from Faulting Address controls Branch Selection starting at ntdll_77df0000!LdrpResSearchResourceInsideDirectory+0x000000000000029e. | 2 | 4.4 | Medium | 2017-07-18 | 2017-07-11 | View | |
| 23002 | CVE-2015-0528 | The RPC daemon in EMC Isilon OneFS 6.5.x and 7.0.x before 7.0.2.13, 7.1.0 before 7.1.0.6, 7.1.1 before 7.1.1.2, and 7.2.0 before 7.2.0.1 allows local users to gain privileges by leveraging an ability to modify system files. | 2 | 7.2 | High | 2017-01-19 | 2016-08-24 | View | |
| 23258 | CVE-2015-0819 | The UITour::onPageEvent function in Mozilla Firefox before 36.0 does not ensure that an API call originates from a foreground tab, which allows remote attackers to conduct spoofing and clickjacking attacks by leveraging access to a UI Tour web site. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-21 | View | |
| 23514 | CVE-2015-1128 | The private-browsing implementation in Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5 allows attackers to obtain sensitive browsing-history information via vectors involving push-notification requests. | 2 | 5 | Medium | 2017-01-19 | 2015-09-11 | View |
Page 15122 of 17672, showing 5 records out of 88360 total, starting on record 75606, ending on 75610