NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
26400  CVE-2015-5149  Directory traversal vulnerability in Zoho ManageEngine SupportCenter Plus 7.90 allows remote authenticated users to write to arbitrary files via a .. (dot dot) in the component parameter in the Request component to workorder/Attachment.jsp.    5.5  Medium  2017-01-19  2016-12-07  View
26656  CVE-2015-5519  Cross-site scripting (XSS) vulnerability in the applyConvolution demo in WideImage 11.02.19 allows remote attackers to inject arbitrary web script or HTML via the matrix parameter to demo/index.php.    4.3  Medium  2017-01-19  2015-08-13  View
26912  CVE-2015-5848  IOAcceleratorFamily in Apple iOS before 9 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified vectors.    7.2  High  2017-01-19  2016-12-21  View
27168  CVE-2015-6159  Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Microsoft Browser Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6140, CVE-2015-6142, CVE-2015-6143, CVE-2015-6153, CVE-2015-6158, and CVE-2015-6160.    9.3  High  2017-01-19  2016-12-07  View
27424  CVE-2015-6527  The php_str_replace_in_subject function in ext/standard/string.c in PHP 7.x before 7.0.0 allows remote attackers to execute arbitrary code via a crafted value in the third argument to the str_ireplace function.    7.5  High  2017-01-19  2016-01-21  View

Page 1955 of 17672, showing 5 records out of 88360 total, starting on record 9771, ending on 9775

Actions