NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
26412  CVE-2015-5167  The Policy Admin Tool in Apache Ranger before 0.5.1 allows remote authenticated users to bypass intended access restrictions via the REST API.    Medium  2017-01-19  2016-04-13  View
26668  CVE-2015-5537  The SSL layer of the HTTPS service in Siemens RuggedCom ROS before 4.2.0 and ROX II does not properly implement CBC padding, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, a different vulnerability than CVE-2014-3566.    4.3  Medium  2017-01-19  2015-08-03  View
27692  CVE-2015-6919  Cross-site scripting (XSS) vulnerability in the googleSearch (CSE) (com_googlesearch_cse) component 3.0.2 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the q parameter to index.php.    4.3  Medium  2017-01-19  2015-09-14  View
27948  CVE-2015-7290  Cross-site scripting (XSS) vulnerability in adv_pwd_cgi in the web management interface on Arris DG860A, TG862A, and TG862G devices with firmware TS0703128_100611 through TS0705125D_031115 allows remote attackers to inject arbitrary web script or HTML via the pwd parameter.    4.3  Medium  2017-01-19  2015-11-23  View
31020  CVE-2014-2630  Unspecified vulnerability in HP Operations Agent 11.00, when Glance is used, allows local users to gain privileges via unknown vectors.    4.4  Medium  2017-01-19  2017-01-06  View

Page 1606 of 17672, showing 5 records out of 88360 total, starting on record 8026, ending on 8030

Actions