NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
24313 | CVE-2015-2187 | The dissect_atn_cpdlc_heur function in asn1/atn-cpdlc/packet-atn-cpdlc-template.c in the ATN-CPDLC dissector in Wireshark 1.12.x before 1.12.4 does not properly follow the TRY/ENDTRY code requirements, which allows remote attackers to cause a denial of service (stack memory corruption and application crash) via a crafted packet. | 2 | 5 | Medium | 2017-01-19 | 2016-11-28 | View | |
24569 | CVE-2015-2543 | Cross-site scripting (XSS) vulnerability in Outlook Web Access (OWA) in Microsoft Exchange Server 2013 Cumulative Update 8 and 9 allows remote attackers to inject arbitrary web script or HTML via a crafted e-mail message, aka "Exchange Spoofing Vulnerability." | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-21 | View | |
24825 | CVE-2015-2845 | The cpanel function in go_site.php in GoAutoDial GoAdmin CE before 3.3-1421902800 allows remote attackers to execute arbitrary commands via the $type portion of the PATH_INFO. | 2 | 10 | High | 2017-01-19 | 2016-12-02 | View | |
25081 | CVE-2015-3179 | login/confirm.php in Moodle through 2.5.9, 2.6.x before 2.6.11, 2.7.x before 2.7.8, and 2.8.x before 2.8.6 allows remote authenticated users to bypass intended login restrictions by leveraging access to an unconfirmed suspended account. | 2 | 3.5 | Low | 2017-01-19 | 2016-12-30 | View | |
25337 | CVE-2015-3690 | The DiskImages subsystem in Apple iOS before 8.4 and OS X before 10.10.4 allows attackers to obtain sensitive memory-layout information for the kernel via a crafted app. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View |
Page 17280 of 17672, showing 5 records out of 88360 total, starting on record 86396, ending on 86400