NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 25630 | CVE-2015-4139 | Cross-site scripting (XSS) vulnerability in smilies4wp.php in the WP Smiley plugin 1.4.1 for WordPress allows remote authenticated users to inject arbitrary web script or HTML via the s4w-more parameter to wp-admin/options-general.php. | 2 | 3.5 | Low | 2017-01-19 | 2015-06-19 | View | |
| 25886 | CVE-2015-4456 | ownCloud Desktop Client before 1.8.2 does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which allows man-in-the-middle attackers to bypass the user"s certificate distrust decision and obtain sensitive information by leveraging a self-signed certificate and a connection to a server using its own self-signed certificate. | 2 | 2.6 | Low | 2017-01-19 | 2016-12-23 | View | |
| 26142 | CVE-2015-4821 | Unspecified vulnerability in the Integrated Lights Out Manager (ILOM) component in Oracle Sun Systems Products Suite 3.0, 3.1, and 3.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Web. | 2 | 9.3 | High | 2017-01-19 | 2016-12-23 | View | |
| 26398 | CVE-2015-5147 | Stack-based buffer overflow in the header_anchor function in the HTML renderer in Redcarpet before 3.3.2 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors. | 2 | 7.5 | High | 2017-01-19 | 2015-07-14 | View | |
| 26654 | CVE-2015-5515 | The Views Bulk Operations (VBO) module 6.x-1.x and 7.x-3.x before 7.x-3.3 for Drupal, when the bulk operation for changing Roles is enabled, allows remote authenticated users to edit user accounts and add arbitrary roles to the accounts by leveraging access to a user account listing view with VBO enabled. | 2 | 4.9 | Medium | 2017-01-19 | 2016-11-28 | View |
Page 2073 of 17672, showing 5 records out of 88360 total, starting on record 10361, ending on 10365