NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
26661  CVE-2015-5528  Cross-site scripting (XSS) vulnerability in the save_order function in class-floating-social-bar.php in the Floating Social Bar plugin before 1.1.6 for WordPress allows remote attackers to inject arbitrary web script or HTML via the items[] parameter in an fsb_save_order action to wp-admin/admin-ajax.php.    4.3  Medium  2017-01-19  2016-12-21  View
26917  CVE-2015-5854  The backup implementation in Time Machine in Apple OS X before 10.11 allows local users to obtain access to keychain items via unspecified vectors.    2.1  Low  2017-01-19  2016-12-09  View
27173  CVE-2015-6165  Microsoft Silverlight 5 before 5.1.41105.00 allows remote attackers to bypass the ASLR protection mechanism via a crafted web site, aka "Microsoft Silverlight Information Disclosure Vulnerability," a different vulnerability than CVE-2015-6114.    4.3  Medium  2017-01-19  2015-12-09  View
27429  CVE-2015-6537  SQL injection vulnerability in the login page in Epiphany Cardio Server 3.3 allows remote attackers to execute arbitrary SQL commands via a crafted URL.    7.5  High  2017-01-19  2015-12-28  View
27685  CVE-2015-6909  Cross-site scripting (XSS) vulnerability in the "Create download task via file upload" feature in Synology Download Station before 3.5-2962 allows remote attackers to inject arbitrary web script or HTML via the name element in the Info dictionary in a torrent file.    4.3  Medium  2017-01-19  2015-09-14  View

Page 2549 of 17672, showing 5 records out of 88360 total, starting on record 12741, ending on 12745

Actions