NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 28192 | CVE-2015-7713 | OpenStack Compute (Nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) do not properly apply security group changes, which allows remote attackers to bypass intended restriction by leveraging an instance that was running when the change was made. | 2 | 5 | Medium | 2017-01-19 | 2016-12-07 | View | |
| 28191 | CVE-2015-7712 | Multiple eval injection vulnerabilities in mods/_standard/gradebook/edit_marks.php in ATutor 2.2 and earlier allow remote authenticated users with the AT_PRIV_GRADEBOOK privilege to execute arbitrary PHP code via the (1) asc or (2) desc parameter. | 2 | 6.5 | Medium | 2017-01-19 | 2015-11-17 | View | |
| 28190 | CVE-2015-7709 | The arkeiad daemon in the Arkeia Backup Agent in Western Digital Arkeia 11.0.12 and earlier allows remote attackers to bypass authentication and execute arbitrary commands via a series of crafted requests involving the ARKFS_EXEC_CMD operation. | 2 | 10 | High | 2017-01-19 | 2015-10-06 | View | |
| 28189 | CVE-2015-7708 | Cross-site scripting (XSS) vulnerability in 4images 1.7.11 and earlier allows remote attackers to inject arbitrary web script or HTML via the cat_description parameter in an updatecat action to admin/categories.php. | 2 | 4.3 | Medium | 2017-01-19 | 2015-10-06 | View | |
| 28188 | CVE-2015-7707 | Ignite Realtime Openfire 3.10.2 allows remote authenticated users to gain administrator access via the isadmin parameter to user-edit-form.jsp. | 2 | 6.5 | Medium | 2017-01-19 | 2015-10-06 | View |
Page 2708 of 17672, showing 5 records out of 88360 total, starting on record 13536, ending on 13540