NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
23544 | CVE-2015-1158 | The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 performs incorrect free operations for multiple-value job-originating-host-name attributes, which allows remote attackers to trigger data corruption for reference-counted strings via a crafted (1) IPP_CREATE_JOB or (2) IPP_PRINT_JOB request, as demonstrated by replacing the configuration file and consequently executing arbitrary code. | 2 | 10 | High | 2017-02-28 | 2017-02-23 | View | |
23800 | CVE-2015-1489 | The management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP1 allows remote authenticated users to gain privileges via unspecified vectors. | 2 | 8.5 | High | 2017-01-19 | 2015-08-03 | View | |
24056 | CVE-2015-1827 | The get_user_grouplist function in the extdom plug-in in FreeIPA before 4.1.4 does not properly reallocate memory when processing user accounts, which allows remote attackers to cause a denial of service (crash) via a group list request for a user that belongs to a large number of groups. | 2 | 5 | Medium | 2017-01-19 | 2016-12-30 | View | |
24312 | CVE-2015-2184 | ZeusCart 4 allows remote attackers to obtain configuration information via a getphpinfo action to admin/, which calls the phpinfo function. | 2 | 5 | Medium | 2017-01-19 | 2015-03-11 | View | |
24568 | CVE-2015-2542 | Microsoft Internet Explorer 10 and 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability." | 2 | 9.3 | High | 2017-01-19 | 2016-12-21 | View |
Page 17219 of 17672, showing 5 records out of 88360 total, starting on record 86091, ending on 86095