NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
25119  CVE-2015-3228  Integer overflow in the gs_heap_alloc_bytes function in base/gsmalloc.c in Ghostscript 9.15 and earlier allows remote attackers to cause a denial of service (crash) via a crafted Postscript (ps) file, as demonstrated by using the ps2pdf command, which triggers an out-of-bounds read or write.    6.8  Medium  2017-01-19  2016-11-28  View
25375  CVE-2015-3728  The WiFi Connectivity feature in Apple iOS before 8.4 allows remote Wi-Fi access points to trigger an automatic association, with an arbitrary security type, by operating with a recognized ESSID within an 802.11 network"s coverage area.    4.8  Medium  2017-01-19  2016-12-27  View
25631  CVE-2015-4140  Cross-site request forgery (CSRF) vulnerability in the WP Smiley plugin 1.4.1 for WordPress allows remote attackers to hijack the authentication of editors for requests that conduct cross-site scripting (XSS) attacks via the s4w-more parameter to the smilies4wp.php page to wp-admin/options-general.php.    6.8  Medium  2017-01-19  2015-06-19  View
25887  CVE-2015-4458  The TLS implementation in the Cavium cryptographic-module firmware, as distributed with Cisco Adaptive Security Appliance (ASA) Software 9.1(5.21) and other products, does not verify the MAC field, which allows man-in-the-middle attackers to spoof TLS content by modifying packets, aka Bug ID CSCuu52976.    4.3  Medium  2017-01-19  2015-07-21  View
26143  CVE-2015-4822  Unspecified vulnerability in Oracle Sun Solaris 11.2 allows local users to affect availability via unknown vectors related to Solaris Kernel Zones, a different vulnerability than CVE-2015-4831.    1.2  Low  2017-01-19  2016-12-23  View

Page 2491 of 17672, showing 5 records out of 88360 total, starting on record 12451, ending on 12455

Actions