NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 26657 | CVE-2015-5520 | Cross-site scripting (XSS) vulnerability in the Users module in Orchard 1.7.3 through 1.8.2 and 1.9.x before 1.9.1 allows remote attackers to inject arbitrary web script or HTML via the username when creating a new user account, which is not properly handled when deleting an account. | 2 | 4.3 | Medium | 2017-01-19 | 2015-07-17 | View | |
| 26913 | CVE-2015-5849 | The filtering implementation in AppleEvents in Apple OS X before 10.11 mishandles attempts to send events to a different user, which allows attackers to bypass intended access restrictions by leveraging a screen-sharing connection. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-09 | View | |
| 27169 | CVE-2015-6160 | Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6140, CVE-2015-6142, CVE-2015-6143, CVE-2015-6153, CVE-2015-6158, and CVE-2015-6159. | 2 | 9.3 | High | 2017-01-19 | 2016-12-07 | View | |
| 27425 | CVE-2015-6528 | Multiple cross-site scripting (XSS) vulnerabilities in install_classic.php in Coppermine Photo Gallery (CPG) 1.5.36 allow remote attackers to inject arbitrary web script or HTML via the (1) admin_username, (2) admin_password, (3) admin_email, (4) dbserver, (5) dbname, (6) dbuser, (7) dbpass, (8) table_prefix, or (9) impath parameter. | 2 | 4.3 | Medium | 2017-01-19 | 2015-08-21 | View | |
| 27681 | CVE-2015-6863 | HPE ArcSight Logger before 6.1P1 allows remote attackers to execute arbitrary code via unspecified input to the (1) Intellicus or (2) client-certificate upload component. | 2 | 7.5 | High | 2017-01-19 | 2016-11-30 | View |
Page 2016 of 17672, showing 5 records out of 88360 total, starting on record 10076, ending on 10080