NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 26848 | CVE-2015-5784 | runner in Install.framework in the Install Framework Legacy component in Apple OS X before 10.10.5 does not properly drop privileges, which allows attackers to execute arbitrary code in a privileged context via a crafted app. | 2 | 9.3 | High | 2017-01-19 | 2016-11-28 | View | |
| 27104 | CVE-2015-6086 | Microsoft Internet Explorer 9 through 11 allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka "Internet Explorer Information Disclosure Vulnerability." | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-07 | View | |
| 27360 | CVE-2015-6425 | The WebApplications Identity Management subsystem in Cisco Unified Communications Manager 10.5(0.98000.88) allows remote attackers to cause a denial of service (subsystem outage) via invalid session tokens, aka Bug ID CSCul83786. | 2 | 5 | Medium | 2017-01-19 | 2016-12-07 | View | |
| 27616 | CVE-2015-6777 | Use-after-free vulnerability in the ContainerNode::notifyNodeInsertedInternal function in WebKit/Source/core/dom/ContainerNode.cpp in the DOM implementation in Google Chrome before 47.0.2526.73 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to DOMCharacterDataModified events for certain detached-subtree insertions. | 2 | 7.5 | High | 2017-01-19 | 2016-12-07 | View | |
| 27872 | CVE-2015-7185 | Mozilla Firefox before 42.0 on Android does not ensure that the address bar is restored upon fullscreen-mode exit, which allows remote attackers to spoof the address bar via crafted JavaScript code. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-07 | View |
Page 15184 of 17672, showing 5 records out of 88360 total, starting on record 75916, ending on 75920