NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
24056 | CVE-2015-1827 | The get_user_grouplist function in the extdom plug-in in FreeIPA before 4.1.4 does not properly reallocate memory when processing user accounts, which allows remote attackers to cause a denial of service (crash) via a group list request for a user that belongs to a large number of groups. | 2 | 5 | Medium | 2017-01-19 | 2016-12-30 | View | |
24312 | CVE-2015-2184 | ZeusCart 4 allows remote attackers to obtain configuration information via a getphpinfo action to admin/, which calls the phpinfo function. | 2 | 5 | Medium | 2017-01-19 | 2015-03-11 | View | |
24568 | CVE-2015-2542 | Microsoft Internet Explorer 10 and 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability." | 2 | 9.3 | High | 2017-01-19 | 2016-12-21 | View | |
24824 | CVE-2015-2844 | The cpanel function in go_site.php in GoAutoDial GoAdmin CE before 3.3-1420434000 allows remote attackers to execute arbitrary commands via the $action portion of the PATH_INFO. | 2 | 10 | High | 2017-01-19 | 2016-12-02 | View | |
25080 | CVE-2015-3178 | Cross-site scripting (XSS) vulnerability in the external_format_text function in lib/externallib.php in Moodle through 2.5.9, 2.6.x before 2.6.11, 2.7.x before 2.7.8, and 2.8.x before 2.8.6 allows remote authenticated users to inject arbitrary web script or HTML into an external application via a crafted string that is visible to web services. | 2 | 3.5 | Low | 2017-01-19 | 2016-12-30 | View |
Page 17167 of 17672, showing 5 records out of 88360 total, starting on record 85831, ending on 85835