NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
23792 | CVE-2015-1481 | Ansible Tower (aka Ansible UI) before 2.0.5 allows remote organization administrators to gain privileges by creating a superuser account. | 2 | 6.5 | Medium | 2017-01-19 | 2015-02-05 | View | |
24048 | CVE-2015-1813 | Cross-site scripting (XSS) vulnerability in Jenkins before 1.606 and LTS before 1.596.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2015-1812. | 2 | 4.3 | Medium | 2017-01-19 | 2016-06-15 | View | |
24560 | CVE-2015-2529 | The kernel in Microsoft Windows 8.1, Windows Server 2012 R2, Windows RT 8.1, and Windows 10 allows local users to bypass the ASLR protection mechanism via a crafted application, aka "Kernel ASLR Bypass Vulnerability." | 2 | 2.1 | Low | 2017-01-19 | 2016-12-21 | View | |
24816 | CVE-2015-2830 | arch/x86/kernel/entry_64.S in the Linux kernel before 3.19.2 does not prevent the TS_COMPAT flag from reaching a user-mode task, which might allow local users to bypass the seccomp or audit protection mechanism via a crafted application that uses the (1) fork or (2) close system call, as demonstrated by an attack against seccomp before 3.16. | 2 | 1.9 | Low | 2017-01-19 | 2016-12-30 | View | |
25072 | CVE-2015-3158 | The invokeNextValve function in identity/federation/bindings/tomcat/idp/AbstractIDPValve.java in PicketLink before 2.8.0.Beta1 does not properly check role based authorization, which allows remote authenticated users to gain access to restricted application resources via a (1) direct request or (2) request through an SP initiated flow. | 2 | 4 | Medium | 2017-01-19 | 2015-08-27 | View |
Page 16270 of 17672, showing 5 records out of 88360 total, starting on record 81346, ending on 81350