NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
25898  CVE-2015-4475  The mozilla::AudioSink function in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 mishandles inconsistent sample formats within MP3 audio data, which allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read) via a malformed file.    7.5  High  2017-01-19  2016-12-23  View
26154  CVE-2015-4833  Unspecified vulnerability in Oracle MySQL Server 5.6.25 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : Partition.    Medium  2017-01-19  2016-12-23  View
26410  CVE-2015-5165  The C+ mode offload emulation in the RTL8139 network card device model in QEMU, as used in Xen 4.5.x and earlier, allows remote attackers to read process heap memory via unspecified vectors.    Medium  2017-01-19  2016-12-23  View
26666  CVE-2015-5535  Cross-site scripting (XSS) vulnerability in the qTranslate plugin 2.5.39 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the edit parameter in the qtranslate page to wp-admin/options-general.php.    4.3  Medium  2017-01-19  2016-12-21  View
26922  CVE-2015-5859  The CFNetwork HTTPProtocol component in Apple iOS before 9 and OS X before 10.11 does not properly recognize the HSTS preload list during a Safari private-browsing session, which makes it easier for remote attackers to obtain sensitive information by sniffing the network.    4.3  Medium  2017-01-19  2015-11-30  View

Page 2557 of 17672, showing 5 records out of 88360 total, starting on record 12781, ending on 12785

Actions