NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
24901  CVE-2015-2952  The user-information management functionality in Igreks MilkyStep Light 0.94 and earlier and Professional 1.82 and earlier allows remote authenticated users to bypass intended access restrictions and modify administrative credentials via unspecified vectors, a different vulnerability than CVE-2015-2953 and CVE-2015-2958.    6.5  Medium  2017-01-19  2016-12-02  View
25157  CVE-2015-3282  vos in OpenAFS before 1.6.13, when updating VLDB entries, allows remote attackers to obtain stack data by sniffing the network.    4.3  Medium  2017-01-19  2015-08-12  View
25413  CVE-2015-3766  The kernel in Apple iOS before 8.4.1 and OS X before 10.10.5 does not properly restrict the mach_port_space_info interface, which allows attackers to obtain sensitive memory-layout information via a crafted app.    4.3  Medium  2017-01-19  2016-12-23  View
25669  CVE-2015-4194  The web-based administrative interface in Cisco WebEx Meeting Center provides different error messages for failed login attempts depending on whether the username exists or corresponds to a privileged account, which allows remote attackers to enumerate account names and obtain sensitive information via a series of requests, aka Bug ID CSCuf28861.    Medium  2017-01-19  2016-12-28  View
25925  CVE-2015-4502  js/src/proxy/Proxy.cpp in Mozilla Firefox before 41.0 mishandles certain receiver arguments, which allows remote attackers to bypass intended window access restrictions via a crafted web site.    4.3  Medium  2017-01-19  2016-12-21  View

Page 2503 of 17672, showing 5 records out of 88360 total, starting on record 12511, ending on 12515

Actions