NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
24558 | CVE-2015-2527 | The process-initialization implementation in win32k.sys in the kernel-mode drivers in Microsoft Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 does not properly constrain impersonation levels, which allows local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability." | 2 | 7.2 | High | 2017-01-19 | 2016-12-21 | View | |
24814 | CVE-2015-2828 | CA Spectrum 9.2.x and 9.3.x before 9.3 H02 does not properly validate serialized Java objects, which allows remote authenticated users to obtain administrative privileges via crafted object data. | 2 | 9 | High | 2017-01-19 | 2016-12-02 | View | |
25070 | CVE-2015-3155 | Foreman before 1.8.1 does not set the secure flag for the _session_id cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session. | 2 | 5 | Medium | 2017-01-19 | 2015-08-18 | View | |
25326 | CVE-2015-3679 | Apple Type Services (ATS) in Apple OS X before 10.10.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file, a different vulnerability than CVE-2015-3680, CVE-2015-3681, and CVE-2015-3682. | 2 | 6.8 | Medium | 2017-01-19 | 2016-11-28 | View | |
25582 | CVE-2015-4031 | Directory traversal vulnerability in saveFile.jsp in the development installation in Visual Mining NetChart allows remote attackers to write to arbitrary files via unspecified vectors. | 2 | 10 | High | 2017-01-19 | 2016-12-05 | View |
Page 16615 of 17672, showing 5 records out of 88360 total, starting on record 83071, ending on 83075