NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
23534 | CVE-2015-1148 | Screen Sharing in Apple OS X before 10.10.3 stores the password of a user in a log file, which might allow context-dependent attackers to obtain sensitive information by reading this file. | 2 | 5 | Medium | 2017-01-19 | 2015-09-17 | View | |
23790 | CVE-2015-1479 | SQL injection vulnerability in reports/CreateReportTable.jsp in ZOHO ManageEngine ServiceDesk Plus (SDP) before 9.0 build 9031 allows remote authenticated users to execute arbitrary SQL commands via the site parameter. | 2 | 6.5 | Medium | 2017-01-19 | 2015-02-06 | View | |
24046 | CVE-2015-1810 | The HudsonPrivateSecurityRealm class in Jenkins before 1.600 and LTS before 1.596.1 does not restrict access to reserved names when using the "Jenkins" own user database" setting, which allows remote attackers to gain privileges by creating a reserved name. | 2 | 4.6 | Medium | 2017-01-19 | 2016-06-15 | View | |
24302 | CVE-2015-2166 | Directory traversal vulnerability in the Instance Monitor in Ericsson Drutt Mobile Service Delivery Platform (MSDP) 4, 5, and 6 allows remote attackers to read arbitrary files via a ..%2f (dot dot encoded slash) in the default URI. | 2 | 5 | Medium | 2017-01-19 | 2016-12-02 | View | |
24558 | CVE-2015-2527 | The process-initialization implementation in win32k.sys in the kernel-mode drivers in Microsoft Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 does not properly constrain impersonation levels, which allows local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability." | 2 | 7.2 | High | 2017-01-19 | 2016-12-21 | View |
Page 16134 of 17672, showing 5 records out of 88360 total, starting on record 80666, ending on 80670