NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
23796  CVE-2015-1485  Cross-site request forgery (CSRF) vulnerability in the administration console in the Enforce Server in Symantec Data Loss Prevention (DLP) before 12.5.2 allows remote attackers to hijack the authentication of administrators.    6.8  Medium  2017-01-19  2015-06-29  View
24052  CVE-2015-1818  XML external entity (XXE) vulnerability in the dashbuilder import facility (DocumentBuilders in org.jboss.dashboard.export.ImportManagerImpl) in Red Hat JBoss BPM Suite before 6.1.2 allows remote attackers to read arbitrary files, conduct server-side request forgery (SSRF) attacks, and have other unspecified impact via a crafted XML document.    7.5  High  2017-01-19  2015-08-11  View
24308  CVE-2015-2172  DokuWiki before 2014-05-05d and before 2014-09-29c does not properly check permissions for the ACL plugins, which allows remote authenticated users to gain privileges and add or delete ACL rules via a request to the XMLRPC API.    6.5  Medium  2017-01-19  2016-12-30  View
24564  CVE-2015-2534  Hyper-V in Microsoft Windows 8.1, Windows Server 2012 R2, and Windows 10 improperly processes ACL settings, which allows local users to bypass intended network-traffic restrictions via a crafted application, aka "Hyper-V Security Feature Bypass Vulnerability."    1.9  Low  2017-01-19  2016-12-21  View
24820  CVE-2015-2840  Cross-site scripting (XSS) vulnerability in help/rt/large_search.html in Citrix NetScaler before 10.5 build 52.3nc allows remote attackers to inject arbitrary web script or HTML via the searchQuery parameter.    4.3  Medium  2017-01-19  2016-12-02  View

Page 16543 of 17672, showing 5 records out of 88360 total, starting on record 82711, ending on 82715

Actions