NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
25810 | CVE-2015-4352 | Cross-site request forgery (CSRF) vulnerability in the Spider Video Player module for Drupal allows remote attackers to hijack the authentication of administrators for requests that delete videos via unspecified vectors. | 2 | 5.8 | Medium | 2017-01-19 | 2016-06-09 | View | |
26322 | CVE-2015-5041 | The J9 JVM in IBM SDK, Java Technology Edition 6 before SR16 FP20, 6 R1 before SR8 FP20, 7 before SR9 FP30, and 7 R1 before SR3 FP30 allows remote attackers to obtain sensitive information or inject data by invoking non-public interface methods. | 2 | 6.4 | Medium | 2017-01-19 | 2016-11-28 | View | |
26834 | CVE-2015-5770 | MobileInstallation in Apple iOS before 8.4.1 does not ensure the uniqueness of universal provisioning profile bundle IDs, which allows attackers to replace arbitrary extensions via a crafted enterprise app. | 2 | 5.8 | Medium | 2017-01-19 | 2016-12-23 | View | |
27346 | CVE-2015-6411 | Cisco FirePOWER Management Center 5.4.1.3, 6.0.0, and 6.0.1 provides verbose responses to requests for help files, which allows remote attackers to obtain potentially sensitive version information by reading an unspecified field, aka Bug ID CSCux37061. | 2 | 5 | Medium | 2017-01-19 | 2016-11-28 | View | |
27858 | CVE-2015-7115 | libxml2 in Apple iOS before 9.2, OS X before 10.11.2, and tvOS before 9.1 allows remote attackers to obtain sensitive information or cause a denial of service (memory corruption) via a crafted XML document, a different vulnerability than CVE-2015-7116. | 2 | 4.3 | Medium | 2017-01-19 | 2016-01-11 | View |
Page 16054 of 17672, showing 5 records out of 88360 total, starting on record 80266, ending on 80270