NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
25805 | CVE-2015-4347 | Cross-site scripting (XSS) vulnerability in the inLinks Integration module for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified path arguments. | 2 | 4.3 | Medium | 2017-01-19 | 2015-06-30 | View | |
26573 | CVE-2015-5412 | Cross-site request forgery (CSRF) vulnerability in HP Version Control Repository Manager (VCRM) before 7.5.0 allows remote authenticated users to hijack the authentication of unspecified victims via unknown vectors. | 2 | 6 | Medium | 2017-01-19 | 2016-12-21 | View | |
26829 | CVE-2015-5765 | The user interface in Safari in Apple iOS before 9 allows remote attackers to spoof URLs via unspecified vectors, a different vulnerability than CVE-2015-5764 and CVE-2015-5767. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-21 | View | |
27341 | CVE-2015-6406 | Directory traversal vulnerability in the Tools menu in Cisco Emergency Responder 10.5(1.10000.5) allows remote authenticated users to write to arbitrary files via a crafted filename, aka Bug ID CSCuv21781. | 2 | 4 | Medium | 2017-01-19 | 2016-12-07 | View | |
27597 | CVE-2015-6758 | The CPDF_Document::GetPage function in fpdfapi/fpdf_parser/fpdf_parser_document.cpp in PDFium, as used in Google Chrome before 46.0.2490.71, does not properly perform a cast of a dictionary object, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted PDF document. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-23 | View |
Page 15875 of 17672, showing 5 records out of 88360 total, starting on record 79371, ending on 79375