NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
26653 | CVE-2015-5514 | Cross-site scripting (XSS) vulnerability in the Migrate module 7.x-2.x before 7.x-2.8 for Drupal, when the migrate_ui submodule is enabled, allows user-assisted remote attackers to inject arbitrary web script or HTML via a destination field label. | 2 | 2.6 | Low | 2017-01-19 | 2015-08-20 | View | |
26909 | CVE-2015-5845 | IOKit in the kernel in Apple iOS before 9 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2015-5844 and CVE-2015-5846. | 2 | 9.3 | High | 2017-01-19 | 2016-12-21 | View | |
27165 | CVE-2015-6156 | Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6148. | 2 | 9.3 | High | 2017-01-19 | 2015-12-09 | View | |
27421 | CVE-2015-6524 | The LDAPLoginModule implementation in the Java Authentication and Authorization Service (JAAS) in Apache ActiveMQ 5.x before 5.10.1 allows wildcard operators in usernames, which allows remote attackers to obtain credentials via a brute force attack. NOTE: this identifier was SPLIT from CVE-2014-3612 per ADT2 due to different vulnerability types. | 2 | 5 | Medium | 2017-01-19 | 2016-12-09 | View | |
27677 | CVE-2015-6859 | HPE Network Switches with software 15.16.x and 15.17.x allow local users to bypass intended access restrictions via unspecified vectors, a different vulnerability than CVE-2015-6860. | 2 | 4.6 | Medium | 2017-01-19 | 2016-12-07 | View |
Page 1774 of 17672, showing 5 records out of 88360 total, starting on record 8866, ending on 8870