NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 24907 | CVE-2015-2958 | Igreks MilkyStep Light 0.94 and earlier and Professional 1.82 and earlier allows remote attackers to bypass intended access restrictions and modify settings via unspecified vectors, a different vulnerability than CVE-2015-2952 and CVE-2015-2953. | 2 | 6.4 | Medium | 2017-01-19 | 2016-12-02 | View | |
| 27979 | CVE-2015-7365 | Cross-site scripting (XSS) vulnerability in the plugin upgrade form in Revive Adserver before 3.2.2 allows remote attackers to inject arbitrary web script or HTML via the filename of an uploaded file containing errors. | 2 | 4.3 | Medium | 2017-01-19 | 2015-10-15 | View | |
| 28235 | CVE-2015-7788 | ASUS Japan WL-330NUL devices with firmware before 3.0.0.42 allow remote attackers to execute arbitrary commands via unspecified vectors. | 2 | 5.8 | Medium | 2017-01-19 | 2015-12-30 | View | |
| 28491 | CVE-2015-8262 | Buffalo WZR-600DHP2 devices with firmware 2.09, 2.13, and 2.16 use an improper algorithm for selecting the ID value in the header of a DNS query, which makes it easier for remote attackers to spoof responses by predicting this value. | 2 | 5 | Medium | 2017-01-19 | 2016-11-28 | View | |
| 29003 | CVE-2014-0060 | PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 does not properly enforce the ADMIN OPTION restriction, which allows remote authenticated members of a role to add or remove arbitrary users to that role by calling the SET ROLE command before the associated GRANT command. | 2 | 4 | Medium | 2017-01-19 | 2017-01-06 | View |
Page 2710 of 17672, showing 5 records out of 88360 total, starting on record 13546, ending on 13550