NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 22490 | CVE-2016-9860 | An issue was discovered in phpMyAdmin. An unauthenticated user can execute a denial of service attack when phpMyAdmin is running with $cfg["AllowArbitraryServer"]=true. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-23 | View | |
| 22746 | CVE-2015-0259 | OpenStack Compute (Nova) before 2014.1.4, 2014.2.x before 2014.2.3, and kilo before kilo-3 does not validate the origin of websocket requests, which allows remote attackers to hijack the authentication of users for access to consoles via a crafted webpage. | 2 | 5.1 | Medium | 2017-01-19 | 2015-04-29 | View | |
| 23002 | CVE-2015-0528 | The RPC daemon in EMC Isilon OneFS 6.5.x and 7.0.x before 7.0.2.13, 7.1.0 before 7.1.0.6, 7.1.1 before 7.1.1.2, and 7.2.0 before 7.2.0.1 allows local users to gain privileges by leveraging an ability to modify system files. | 2 | 7.2 | High | 2017-01-19 | 2016-08-24 | View | |
| 23258 | CVE-2015-0819 | The UITour::onPageEvent function in Mozilla Firefox before 36.0 does not ensure that an API call originates from a foreground tab, which allows remote attackers to conduct spoofing and clickjacking attacks by leveraging access to a UI Tour web site. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-21 | View | |
| 23514 | CVE-2015-1128 | The private-browsing implementation in Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5 allows attackers to obtain sensitive browsing-history information via vectors involving push-notification requests. | 2 | 5 | Medium | 2017-01-19 | 2015-09-11 | View |
Page 15397 of 17672, showing 5 records out of 88360 total, starting on record 76981, ending on 76985