NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
24907  CVE-2015-2958  Igreks MilkyStep Light 0.94 and earlier and Professional 1.82 and earlier allows remote attackers to bypass intended access restrictions and modify settings via unspecified vectors, a different vulnerability than CVE-2015-2952 and CVE-2015-2953.    6.4  Medium  2017-01-19  2016-12-02  View
27979  CVE-2015-7365  Cross-site scripting (XSS) vulnerability in the plugin upgrade form in Revive Adserver before 3.2.2 allows remote attackers to inject arbitrary web script or HTML via the filename of an uploaded file containing errors.    4.3  Medium  2017-01-19  2015-10-15  View
28235  CVE-2015-7788  ASUS Japan WL-330NUL devices with firmware before 3.0.0.42 allow remote attackers to execute arbitrary commands via unspecified vectors.    5.8  Medium  2017-01-19  2015-12-30  View
28491  CVE-2015-8262  Buffalo WZR-600DHP2 devices with firmware 2.09, 2.13, and 2.16 use an improper algorithm for selecting the ID value in the header of a DNS query, which makes it easier for remote attackers to spoof responses by predicting this value.    Medium  2017-01-19  2016-11-28  View
29003  CVE-2014-0060  PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 does not properly enforce the ADMIN OPTION restriction, which allows remote authenticated members of a role to add or remove arbitrary users to that role by calling the SET ROLE command before the associated GRANT command.    Medium  2017-01-19  2017-01-06  View

Page 2710 of 17672, showing 5 records out of 88360 total, starting on record 13546, ending on 13550

Actions