NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
23583 | CVE-2015-1221 | Use-after-free vulnerability in Blink, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging incorrect ordering of operations in the Web SQL Database thread relative to Blink"s main thread, related to the shutdown function in web/WebKit.cpp. | 2 | 7.5 | High | 2017-01-19 | 2016-12-21 | View | |
23839 | CVE-2015-1566 | Cross-site scripting (XSS) vulnerability in DotNetNuke (DNN) before 7.4.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-19 | 2015-02-09 | View | |
24095 | CVE-2015-1892 | The Multicast DNS (mDNS) responder in IBM Security Access Manager for Web 7.x before 7.0.0 FP12 and 8.x before 8.0.1 FP1 inadvertently responds to unicast queries with source addresses that are not link-local, which allows remote attackers to cause a denial of service (traffic amplification) or obtain potentially sensitive information via port-5353 UDP packets. | 2 | 5 | Medium | 2017-01-19 | 2016-08-03 | View | |
24351 | CVE-2015-2248 | Cross-site request forgery (CSRF) vulnerability in the user portal in Dell SonicWALL Secure Remote Access (SRA) products with firmware before 7.5.1.0-38sv and 8.x before 8.0.0.1-16sv allows remote attackers to hijack the authentication of users for requests that create bookmarks via a crafted request to cgi-bin/editBookmark. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-02 | View | |
24607 | CVE-2015-2586 | Unspecified vulnerability in the Application Express component in Oracle Database Server before 4.2.1 allows remote attackers to affect availability via unknown vectors. | 2 | 4.3 | Medium | 2017-01-19 | 2015-07-17 | View |
Page 1892 of 17672, showing 5 records out of 88360 total, starting on record 9456, ending on 9460