NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
27089  CVE-2015-6071  Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6066, CVE-2015-6070, CVE-2015-6074, CVE-2015-6076, and CVE-2015-6087.    9.3  High  2017-01-19  2016-12-07  View
27601  CVE-2015-6762  The CSSFontFaceSrcValue::fetch function in core/css/CSSFontFaceSrcValue.cpp in the Cascading Style Sheets (CSS) implementation in Blink, as used in Google Chrome before 46.0.2490.71, does not use the CORS cross-origin request algorithm when a font"s URL appears to be a same-origin URL, which allows remote web servers to bypass the Same Origin Policy via a redirect.    7.5  High  2017-01-19  2016-12-23  View
27857  CVE-2015-7113  The LaunchServices component in Apple iOS before 9.2 and watchOS before 2.1 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a malformed plist.    10  High  2017-01-19  2016-12-07  View
28113  CVE-2015-7603  Directory traversal vulnerability in Konica Minolta FTP Utility 1.0 allows remote attackers to read arbitrary files via a .. (dot dot backslash) in a RETR command.    7.8  High  2017-01-19  2015-09-30  View
28625  CVE-2015-8457  Stack-based buffer overflow in Adobe Flash Player before 18.0.0.268 and 19.x and 20.x before 20.0.0.228 on Windows and OS X and before 11.2.202.554 on Linux, Adobe AIR before 20.0.0.204, Adobe AIR SDK before 20.0.0.204, and Adobe AIR SDK & Compiler before 20.0.0.204 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-8407.    10  High  2017-02-08  2017-02-07  View

Page 16051 of 17672, showing 5 records out of 88360 total, starting on record 80251, ending on 80255

Actions