NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
24049 | CVE-2015-1814 | The API token-issuing service in Jenkins before 1.606 and LTS before 1.596.2 allows remote attackers to gain privileges via a "forced API token change" involving anonymous users. | 2 | 7.5 | High | 2017-01-19 | 2016-06-15 | View | |
24305 | CVE-2015-2169 | Cross-site scripting (XSS) vulnerability in Zoho ManageEngine AssetExplorer 6.1 service pack 6112 allows remote attackers to inject arbitrary web script or HTML via a Publisher registry entry, which is not properly handled when the machine is scanned. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-02 | View | |
24561 | CVE-2015-2530 | Windows Journal in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows remote attackers to execute arbitrary code via a crafted .jnt file, aka "Windows Journal RCE Vulnerability," a different vulnerability than CVE-2015-2513 and CVE-2015-2514. | 2 | 9.3 | High | 2017-01-19 | 2016-12-21 | View | |
24817 | CVE-2015-2831 | Buffer overflow in das_watchdog 0.9.0 allows local users to execute arbitrary code with root privileges via a large string in the XAUTHORITY environment variable. | 2 | 7.2 | High | 2017-01-19 | 2016-12-02 | View | |
25073 | CVE-2015-3164 | The authentication setup in XWayland 1.16.x and 1.17.x before 1.17.2 starts the server in non-authenticating mode, which allows local users to read from or send information to arbitrary X11 clients via vectors involving a UNIX socket. | 2 | 3.6 | Low | 2017-01-19 | 2016-12-02 | View |
Page 16796 of 17672, showing 5 records out of 88360 total, starting on record 83976, ending on 83980