NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
25124  CVE-2015-3234  The OpenID module in Drupal 6.x before 6.36 and 7.x before 7.38 allows remote attackers to log into other users" accounts by leveraging an OpenID identity from certain providers, as demonstrated by the Verisign, LiveJournal, and StackExchange providers.    4.3  Medium  2017-01-19  2016-12-02  View
25380  CVE-2015-3733  WebKit, as used in Apple iOS before 8.4.1 and Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2015-08-13-1 and APPLE-SA-2015-08-13-3.    6.8  Medium  2017-01-19  2016-12-23  View
25636  CVE-2015-4145  The EAP-pwd server and peer implementation in hostapd and wpa_supplicant 1.0 through 2.4 does not validate a fragment is already being processed, which allows remote attackers to cause a denial of service (memory leak) via a crafted message.    Medium  2017-01-19  2016-07-29  View
25892  CVE-2015-4469  The chmd_read_headers function in chmd.c in libmspack before 0.5 does not validate name lengths, which allows remote attackers to cause a denial of service (buffer over-read and application crash) via a crafted CHM file.    4.3  Medium  2017-01-19  2016-06-09  View
26148  CVE-2015-4827  Unspecified vulnerability in the Oracle Retail Open Commerce Platform component in Oracle Retail Applications 3.0 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Framework.    6.4  Medium  2017-01-19  2016-12-23  View

Page 2195 of 17672, showing 5 records out of 88360 total, starting on record 10971, ending on 10975

Actions