NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
26400 | CVE-2015-5149 | Directory traversal vulnerability in Zoho ManageEngine SupportCenter Plus 7.90 allows remote authenticated users to write to arbitrary files via a .. (dot dot) in the component parameter in the Request component to workorder/Attachment.jsp. | 2 | 5.5 | Medium | 2017-01-19 | 2016-12-07 | View | |
26656 | CVE-2015-5519 | Cross-site scripting (XSS) vulnerability in the applyConvolution demo in WideImage 11.02.19 allows remote attackers to inject arbitrary web script or HTML via the matrix parameter to demo/index.php. | 2 | 4.3 | Medium | 2017-01-19 | 2015-08-13 | View | |
26912 | CVE-2015-5848 | IOAcceleratorFamily in Apple iOS before 9 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified vectors. | 2 | 7.2 | High | 2017-01-19 | 2016-12-21 | View | |
27168 | CVE-2015-6159 | Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Microsoft Browser Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6140, CVE-2015-6142, CVE-2015-6143, CVE-2015-6153, CVE-2015-6158, and CVE-2015-6160. | 2 | 9.3 | High | 2017-01-19 | 2016-12-07 | View | |
27424 | CVE-2015-6527 | The php_str_replace_in_subject function in ext/standard/string.c in PHP 7.x before 7.0.0 allows remote attackers to execute arbitrary code via a crafted value in the third argument to the str_ireplace function. | 2 | 7.5 | High | 2017-01-19 | 2016-01-21 | View |
Page 1955 of 17672, showing 5 records out of 88360 total, starting on record 9771, ending on 9775