NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
26412 | CVE-2015-5167 | The Policy Admin Tool in Apache Ranger before 0.5.1 allows remote authenticated users to bypass intended access restrictions via the REST API. | 2 | 4 | Medium | 2017-01-19 | 2016-04-13 | View | |
26668 | CVE-2015-5537 | The SSL layer of the HTTPS service in Siemens RuggedCom ROS before 4.2.0 and ROX II does not properly implement CBC padding, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, a different vulnerability than CVE-2014-3566. | 2 | 4.3 | Medium | 2017-01-19 | 2015-08-03 | View | |
27692 | CVE-2015-6919 | Cross-site scripting (XSS) vulnerability in the googleSearch (CSE) (com_googlesearch_cse) component 3.0.2 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the q parameter to index.php. | 2 | 4.3 | Medium | 2017-01-19 | 2015-09-14 | View | |
27948 | CVE-2015-7290 | Cross-site scripting (XSS) vulnerability in adv_pwd_cgi in the web management interface on Arris DG860A, TG862A, and TG862G devices with firmware TS0703128_100611 through TS0705125D_031115 allows remote attackers to inject arbitrary web script or HTML via the pwd parameter. | 2 | 4.3 | Medium | 2017-01-19 | 2015-11-23 | View | |
31020 | CVE-2014-2630 | Unspecified vulnerability in HP Operations Agent 11.00, when Glance is used, allows local users to gain privileges via unknown vectors. | 2 | 4.4 | Medium | 2017-01-19 | 2017-01-06 | View |
Page 1606 of 17672, showing 5 records out of 88360 total, starting on record 8026, ending on 8030