NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
23005 | CVE-2015-0531 | EMC SourceOne Email Management before 7.2 does not have a lockout mechanism for invalid login attempts, which makes it easier for remote attackers to obtain access via a brute-force attack. | 2 | 5 | Medium | 2017-01-19 | 2016-03-31 | View | |
23261 | CVE-2015-0822 | The Form Autocompletion feature in Mozilla Firefox before 36.0, Firefox ESR 31.x before 31.5, and Thunderbird before 31.5 allows remote attackers to read arbitrary files via crafted JavaScript code. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-23 | View | |
23773 | CVE-2015-1459 | Cross-site scripting (XSS) vulnerability in Fortinet FortiAuthenticator 3.0.0 allows remote attackers to inject arbitrary web script or HTML via the operation parameter to cert/scep/. | 2 | 4.3 | Medium | 2017-01-19 | 2015-02-18 | View | |
24029 | CVE-2015-1789 | The X509_cmp_time function in crypto/x509/x509_vfy.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted length field in ASN1_TIME data, as demonstrated by an attack against a server that supports client authentication with a custom verification callback. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-30 | View | |
24285 | CVE-2015-2132 | Unspecified vulnerability in the execve system-call implementation in HP HP-UX B.11.11, B.11.23, and B.11.31 allows local users to gain privileges via unknown vectors. | 2 | 4.4 | Medium | 2017-01-19 | 2015-08-24 | View |
Page 16447 of 17672, showing 5 records out of 88360 total, starting on record 82231, ending on 82235