NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
26623  CVE-2015-5481  Cross-site scripting (XSS) vulnerability in forms/panels.php in the GD bbPress Attachments plugin before 2.3 for WordPress allows remote attackers to inject arbitrary web script or HTML via the tab parameter in the gdbbpress_attachments page to wp-admin/edit.php.    4.3  Medium  2017-01-19  2016-12-21  View
26879  CVE-2015-5815  WebKit, as used in Apple iTunes before 12.3, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2015-09-16-3.    6.8  Medium  2017-01-19  2016-12-21  View
27391  CVE-2015-6482  Runtime Toolkit before 2.4.7.48 in 3S-Smart CODESYS before 2.3.9.48 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted request.    Medium  2017-01-19  2015-10-19  View
27903  CVE-2015-7218  The HTTP/2 implementation in Mozilla Firefox before 43.0 allows remote attackers to cause a denial of service (integer underflow, assertion failure, and application exit) via a single-byte header frame that triggers incorrect memory allocation.    Medium  2017-01-19  2016-12-07  View
28671  CVE-2015-8550  Xen, when used on a system providing PV backends, allows local guest OS administrators to cause a denial of service (host OS crash) or gain privileges by writing to memory shared between the frontend and backend, aka a double fetch vulnerability.    5.7  Medium  2017-01-19  2016-12-02  View

Page 17655 of 17672, showing 5 records out of 88360 total, starting on record 88271, ending on 88275

Actions