NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 26407 | CVE-2015-5161 | The Zend_Xml_Security::scan in ZendXml before 1.0.1 and Zend Framework before 1.12.14, 2.x before 2.4.6, and 2.5.x before 2.5.2, when running under PHP-FPM in a threaded environment, allows remote attackers to bypass security checks and conduct XML external entity (XXE) and XML entity expansion (XEE) attacks via multibyte encoded characters. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-23 | View | |
| 26663 | CVE-2015-5530 | Multiple cross-site request forgery (CSRF) vulnerabilities in Free Reprintables ArticleFR 3.0.6 allow remote attackers to hijack the authentication of administrators for requests that add an administrator account via a request to dashboard/users/create/. | 2 | 6.8 | Medium | 2017-01-19 | 2015-07-21 | View | |
| 26919 | CVE-2015-5856 | The Application Store component in Apple iOS before 9 allows remote attackers to cause a denial of service to an enterprise-signed app via a crafted ITMS URL. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-21 | View | |
| 27175 | CVE-2015-6168 | Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Microsoft Edge Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6153. | 2 | 9.3 | High | 2017-01-19 | 2016-12-29 | View | |
| 27431 | CVE-2015-6541 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Mail interface in Zimbra Collaboration Server (ZCS) before 8.5 allow remote attackers to hijack the authentication of arbitrary users for requests that change account preferences via a SOAP request to service/soap/BatchRequest. | 2 | 6.8 | Medium | 2017-01-19 | 2016-04-11 | View |
Page 2685 of 17672, showing 5 records out of 88360 total, starting on record 13421, ending on 13425