NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
26340 | CVE-2015-5074 | Incomplete blacklist vulnerability in the FileUploadsFilter class in protected/components/filters/FileUploadsFilter.php in X2Engine X2CRM before 5.0.9 allows remote authenticated users to execute arbitrary PHP code by uploading a file with a .pht extension. | 2 | 7.5 | High | 2017-01-19 | 2016-12-07 | View | |
26596 | CVE-2015-5442 | Unspecified vulnerability in HP Software Update before 5.005.002.002 allows local users to gain privileges via unknown vectors. | 2 | 4.6 | Medium | 2017-01-19 | 2016-12-07 | View | |
26852 | CVE-2015-5788 | The WebKit Canvas implementation in Apple iOS before 9 allows remote attackers to bypass the Same Origin Policy and obtain sensitive image information via vectors involving a CANVAS element. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-21 | View | |
27108 | CVE-2015-6091 | Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word 2016, and Word Viewer allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability." | 2 | 9.3 | High | 2017-01-19 | 2016-12-07 | View | |
27364 | CVE-2015-6429 | The IKEv1 state machine in Cisco IOS 15.4 through 15.6 and IOS XE 3.15 through 3.17 allows remote attackers to cause a denial of service (IPsec connection termination) via a crafted IKEv1 packet to a tunnel endpoint, aka Bug ID CSCuw08236. | 2 | 5 | Medium | 2017-01-19 | 2016-12-07 | View |
Page 16008 of 17672, showing 5 records out of 88360 total, starting on record 80036, ending on 80040