NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
88027 | CVE-2017-6699 | A vulnerability in the web-based management interface of Cisco Prime Infrastructure (PI) and Evolved Programmable Network Manager (EPNM) could allow an unauthenticated, remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. More Information: CSCvc24616 CSCvc35363 CSCvc49574. Known Affected Releases: 3.1(1) 2.0(4.0.45B). | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-07 | View | |
22747 | CVE-2015-0260 | RhodeCode before 2.2.7 and Kallithea 0.1 allows remote authenticated users to obtain API keys and other sensitive information via the get_repo API method. | 2 | 4 | Medium | 2017-01-19 | 2015-02-17 | View | |
88283 | CVE-2017-9921 | IrfanView version 4.44 (32bit) with TOOLS Plugin 4.50 might allow attackers to cause a denial of service or execute arbitrary code via a crafted file, related to Data from Faulting Address controls Branch Selection starting at ntdll_77df0000!LdrpResGetMappingSize+0x00000000000003cc. | 2 | 4.4 | Medium | 2017-07-18 | 2017-07-11 | View | |
23003 | CVE-2015-0529 | EMC PowerPath Virtual Appliance (aka vApp) before 2.0 has default passwords for the (1) emcupdate and (2) svcuser accounts, which makes it easier for remote attackers to obtain potentially sensitive information via a login session. | 2 | 5 | Medium | 2017-01-19 | 2016-08-23 | View | |
23515 | CVE-2015-1129 | Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5 does not properly select X.509 client certificates, which makes it easier for remote attackers to track users via a crafted web site. | 2 | 4.3 | Medium | 2017-01-19 | 2015-09-29 | View |
Page 16378 of 17672, showing 5 records out of 88360 total, starting on record 81886, ending on 81890