NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
27165  CVE-2015-6156  Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6148.    9.3  High  2017-01-19  2015-12-09  View
27421  CVE-2015-6524  The LDAPLoginModule implementation in the Java Authentication and Authorization Service (JAAS) in Apache ActiveMQ 5.x before 5.10.1 allows wildcard operators in usernames, which allows remote attackers to obtain credentials via a brute force attack. NOTE: this identifier was SPLIT from CVE-2014-3612 per ADT2 due to different vulnerability types.    Medium  2017-01-19  2016-12-09  View
27677  CVE-2015-6859  HPE Network Switches with software 15.16.x and 15.17.x allow local users to bypass intended access restrictions via unspecified vectors, a different vulnerability than CVE-2015-6860.    4.6  Medium  2017-01-19  2016-12-07  View
27933  CVE-2015-7261  The FTP service in QNAP iArtist Lite before 1.4.54, as distributed with QNAP Signage Station before 2.0.1, has hardcoded credentials, which makes it easier for remote attackers to obtain access via a session on TCP port 21.    7.5  High  2017-01-19  2016-03-11  View
28189  CVE-2015-7708  Cross-site scripting (XSS) vulnerability in 4images 1.7.11 and earlier allows remote attackers to inject arbitrary web script or HTML via the cat_description parameter in an updatecat action to admin/categories.php.    4.3  Medium  2017-01-19  2015-10-06  View

Page 2007 of 17672, showing 5 records out of 88360 total, starting on record 10031, ending on 10035

Actions