NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
25069  CVE-2015-3153  The default configuration for cURL and libcurl before 7.42.1 sends custom HTTP headers to both the proxy and destination server, which might allow remote proxy servers to obtain sensitive information by reading the header contents.    Medium  2017-01-19  2017-01-02  View
25325  CVE-2015-3678  AppleThunderboltEDMService in Apple OS X before 10.10.4 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified Thunderbolt commands.    7.2  High  2017-01-19  2016-11-28  View
25581  CVE-2015-4029  Cross-site scripting (XSS) vulnerability in the WebGUI in pfSense before 2.2.3 allows remote attackers to inject arbitrary web script or HTML via the zone parameter in a del action to services_captiveportal_zones.php.    4.3  Medium  2017-01-19  2015-08-19  View
25837  CVE-2015-4379  Cross-site request forgery (CSRF) vulnerability in the Webform Multiple File Upload module 6.x-1.x before 6.x-1.3 and 7.x-1.x before 7.x-1.3 for Drupal allows remote attackers to hijack the authentication of certain users for requests that delete files via unspecified vectors.    6.8  Medium  2017-01-19  2016-06-09  View
26093  CVE-2015-4771  Unspecified vulnerability in Oracle MySQL Server 5.6.24 and earlier allows remote authenticated users to affect availability via vectors related to RBR.    3.5  Low  2017-01-19  2016-12-21  View

Page 16554 of 17672, showing 5 records out of 88360 total, starting on record 82766, ending on 82770

Actions