NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
27423 | CVE-2015-6526 | The perf_callchain_user_64 function in arch/powerpc/perf/callchain.c in the Linux kernel before 4.0.2 on ppc64 platforms allows local users to cause a denial of service (infinite loop) via a deep 64-bit userspace backtrace. | 2 | 4.9 | Medium | 2017-01-19 | 2016-12-07 | View | |
27679 | CVE-2015-6861 | HPE Helion Eucalyptus 3.4.0 through 4.2.0 allows remote authenticated users to bypass an intended AssumeRole permission requirement and assume an IAM role by leveraging a policy setting for a user"s account. | 2 | 4.6 | Medium | 2017-01-19 | 2016-11-28 | View | |
27935 | CVE-2015-7277 | The web administration interface on Amped Wireless R10000 devices with firmware 2.5.2.11 has a default password of admin for the admin account, which allows remote attackers to obtain administrative privileges by leveraging a LAN session. | 2 | 9.3 | High | 2017-01-19 | 2016-11-28 | View | |
28191 | CVE-2015-7712 | Multiple eval injection vulnerabilities in mods/_standard/gradebook/edit_marks.php in ATutor 2.2 and earlier allow remote authenticated users with the AT_PRIV_GRADEBOOK privilege to execute arbitrary PHP code via the (1) asc or (2) desc parameter. | 2 | 6.5 | Medium | 2017-01-19 | 2015-11-17 | View | |
28703 | CVE-2015-8606 | Multiple cross-site scripting (XSS) vulnerabilities in SilverStripe CMS & Framework before 3.1.16 and 3.2.x before 3.2.1 allow remote attackers to inject arbitrary web script or HTML via the (1) Locale or (2) FailedLoginCount parameter to admin/security/EditForm/field/Members/item/new/ItemEditForm. | 2 | 4.3 | Medium | 2017-01-19 | 2016-04-13 | View |
Page 1895 of 17672, showing 5 records out of 88360 total, starting on record 9471, ending on 9475