NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
26641  CVE-2015-5502  The Storage API module 7.x-1.x before 7.x-1.8 for Drupal does not properly restrict access to Storage API fields attached to entities that are not nodes, which allows remote attackers to have unspecified impact via unknown vectors.    7.5  High  2017-01-19  2016-11-28  View
26897  CVE-2015-5833  The Login Window component in Apple OS X before 10.11 does not ensure that the screen is locked at the intended time, which allows physically proximate attackers to obtain access by visiting an unattended workstation.    7.2  High  2017-01-19  2016-12-09  View
27153  CVE-2015-6144  Microsoft Internet Explorer 8 through 11 and Microsoft Edge mishandle HTML attributes in HTTP responses, which allows remote attackers to bypass a cross-site scripting (XSS) protection mechanism via unspecified vectors, aka "Microsoft Browser XSS Filter Bypass Vulnerability."    4.3  Medium  2017-01-19  2015-12-09  View
27409  CVE-2015-6511  Cross-site scripting (XSS) vulnerability in pfSense before 2.2.3 allows remote attackers to inject arbitrary web script or HTML via the server[] parameter to services_ntpd.php.    4.3  Medium  2017-01-19  2015-08-19  View
27665  CVE-2015-6847  The default configuration of EMC VPLEX GeoSynchrony 5.4 SP1 before P3 stores cleartext NAVISPHERE GUI passwords in a log file, which allows local users to obtain sensitive information by reading this file.    2.1  Low  2017-01-19  2016-12-07  View

Page 2711 of 17672, showing 5 records out of 88360 total, starting on record 13551, ending on 13555

Actions