NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
25811 | CVE-2015-4353 | Cross-site request forgery (CSRF) vulnerability in the Custom Sitemap module for Drupal allows remote attackers to hijack the authentication of administrators for requests that delete sitemaps via unspecified vectors. | 2 | 5.8 | Medium | 2017-01-19 | 2016-06-09 | View | |
26323 | CVE-2015-5042 | IBM Emptoris Contract Management 9.5.0.x before 9.5.0.6 iFix15, 10.0.0.x and 10.0.1.x before 10.0.1.5 iFix5, 10.0.2.x before 10.0.2.7 iFix4, and 10.0.4.x before 10.0.4.0 iFix3 allows remote attackers to execute arbitrary code by including a crafted Flash file. | 2 | 5 | Medium | 2017-01-19 | 2016-03-10 | View | |
26835 | CVE-2015-5771 | Quartz Composer Framework in Apple OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted QuickTime file. | 2 | 6.8 | Medium | 2017-01-19 | 2016-11-28 | View | |
27859 | CVE-2015-7116 | libxml2 in Apple iOS before 9.2, OS X before 10.11.2, and tvOS before 9.1 allows remote attackers to obtain sensitive information or cause a denial of service (memory corruption) via a crafted XML document, a different vulnerability than CVE-2015-7115. | 2 | 4.3 | Medium | 2017-01-19 | 2016-01-11 | View | |
29651 | CVE-2014-0802 | Directory traversal vulnerability in the aokitaka ZIP with Pass application 4.5.7 and earlier, and ZIP with Pass Pro application 6.3.8 and earlier, for Android allows attackers to overwrite or create arbitrary files via unspecified vectors. | 2 | 5.8 | Medium | 2017-01-19 | 2014-01-13 | View |
Page 16090 of 17672, showing 5 records out of 88360 total, starting on record 80446, ending on 80450