NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 24249 | CVE-2015-2084 | Cross-site request forgery (CSRF) vulnerability in the Easy Social Icons plugin before 1.2.3 for WordPress allows remote attackers to hijack the authentication of administrators for requests that conduct cross-site scripting (XSS) attacks via the image_file parameter in an edit action in the cnss_social_icon_add page to wp-admin/admin.php. | 2 | 6.8 | Medium | 2017-01-19 | 2016-11-29 | View | |
| 24761 | CVE-2015-2762 | Websense TRITON AP-WEB before 8.0.0 allows remote attackers to enumerate Windows domain user accounts via vectors related to HTTP authentication. | 2 | 5 | Medium | 2017-01-19 | 2016-12-02 | View | |
| 25017 | CVE-2015-3092 | Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK & Compiler before 17.0.0.172 do not properly restrict discovery of memory addresses, which allows attackers to bypass the ASLR protection mechanism via unspecified vectors, a different vulnerability than CVE-2015-3091. | 2 | 5 | Medium | 2017-01-19 | 2017-01-02 | View | |
| 25529 | CVE-2015-3950 | Cross-site request forgery (CSRF) vulnerability in XZERES 442SR OS on 442SR wind turbines allows remote attackers to hijack the authentication of admins for requests that select a different default admin user via a GET request. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-05 | View | |
| 25785 | CVE-2015-4320 | The Configuration Log File component in Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.2 allows remote authenticated users to obtain sensitive information by reading a log file, aka Bug ID CSCuv12340. | 2 | 4 | Medium | 2017-01-19 | 2016-11-28 | View |
Page 15177 of 17672, showing 5 records out of 88360 total, starting on record 75881, ending on 75885