NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
24507  CVE-2015-2472  Remote Desktop Session Host (RDSH) in Remote Desktop Protocol (RDP) through 8.1 in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 does not properly verify certificates, which allows man-in-the-middle attackers to spoof clients via a crafted certificate with valid Issuer and Serial Number fields, aka "Remote Desktop Session Host Spoofing Vulnerability."    4.3  Medium  2017-01-19  2015-08-18  View
24763  CVE-2015-2764  Multiple cross-site scripting (XSS) vulnerabilities in Websense TRITON AP-DATA before 8.0.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors to the DSS (1) Mobile or (2) DLP report catalog.    4.3  Medium  2017-01-19  2016-12-02  View
25275  CVE-2015-3451  The _clone function in XML::LibXML before 2.0119 does not properly set the expand_entities option, which allows remote attackers to conduct XML external entity (XXE) attacks via crafted XML data to the (1) new or (2) load_xml function.    Medium  2017-01-19  2017-01-03  View
25787  CVE-2015-4322  Cisco Content Security Management Appliance (SMA) 8.3.6-039, 9.1.0-31, and 9.1.0-103 improperly restricts the privileges available after LDAP authentication, which allows remote authenticated users to read or write to an arbitrary user"s Spam Quarantine folder by visiting a spam-notification URL, aka Bug ID CSCuv65894.    5.5  Medium  2017-01-19  2016-11-28  View
26043  CVE-2015-4714  Cross-site scripting (XSS) vulnerability in the DreamBox DM500-S allows remote attackers to inject arbitrary web script or HTML via the mode parameter to /body.    4.3  Medium  2017-01-19  2016-12-07  View

Page 15247 of 17672, showing 5 records out of 88360 total, starting on record 76231, ending on 76235

Actions