NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 26915 | CVE-2015-5851 | The convenience initializer in the Multipeer Connectivity component in Apple iOS before 9 does not require an encrypted session, which allows local users to obtain cleartext multipeer data via an encrypted-to-unencrypted downgrade attack. | 2 | 2.1 | Low | 2017-01-19 | 2016-12-21 | View | |
| 27171 | CVE-2015-6162 | Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6152. | 2 | 9.3 | High | 2017-01-19 | 2015-12-09 | View | |
| 27427 | CVE-2015-6530 | Cross-site scripting (XSS) vulnerability in OpenText Secure MFT 2013 before 2013 R3 P6 and 2014 before 2014 R2 P2 allows remote attackers to inject arbitrary web script or HTML via the querytext parameter to userdashboard.jsp. | 2 | 4.3 | Medium | 2017-01-19 | 2015-09-03 | View | |
| 27683 | CVE-2015-6867 | The vertica-udx-zygote process in HP Vertica 7.1.1 UDx does not require authentication, which allows remote attackers to execute arbitrary commands via a crafted packet, aka ZDI-CAN-2914. | 2 | 7.5 | High | 2017-01-19 | 2016-11-28 | View | |
| 27939 | CVE-2015-7281 | Cross-site request forgery (CSRF) vulnerability on ReadyNet WRT300N-DD devices with firmware 1.0.26 allows remote attackers to hijack the authentication of arbitrary users. | 2 | 6.8 | Medium | 2017-01-19 | 2016-11-28 | View |
Page 2136 of 17672, showing 5 records out of 88360 total, starting on record 10676, ending on 10680