NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 26641 | CVE-2015-5502 | The Storage API module 7.x-1.x before 7.x-1.8 for Drupal does not properly restrict access to Storage API fields attached to entities that are not nodes, which allows remote attackers to have unspecified impact via unknown vectors. | 2 | 7.5 | High | 2017-01-19 | 2016-11-28 | View | |
| 26897 | CVE-2015-5833 | The Login Window component in Apple OS X before 10.11 does not ensure that the screen is locked at the intended time, which allows physically proximate attackers to obtain access by visiting an unattended workstation. | 2 | 7.2 | High | 2017-01-19 | 2016-12-09 | View | |
| 27153 | CVE-2015-6144 | Microsoft Internet Explorer 8 through 11 and Microsoft Edge mishandle HTML attributes in HTTP responses, which allows remote attackers to bypass a cross-site scripting (XSS) protection mechanism via unspecified vectors, aka "Microsoft Browser XSS Filter Bypass Vulnerability." | 2 | 4.3 | Medium | 2017-01-19 | 2015-12-09 | View | |
| 27409 | CVE-2015-6511 | Cross-site scripting (XSS) vulnerability in pfSense before 2.2.3 allows remote attackers to inject arbitrary web script or HTML via the server[] parameter to services_ntpd.php. | 2 | 4.3 | Medium | 2017-01-19 | 2015-08-19 | View | |
| 27665 | CVE-2015-6847 | The default configuration of EMC VPLEX GeoSynchrony 5.4 SP1 before P3 stores cleartext NAVISPHERE GUI passwords in a log file, which allows local users to obtain sensitive information by reading this file. | 2 | 2.1 | Low | 2017-01-19 | 2016-12-07 | View |
Page 2711 of 17672, showing 5 records out of 88360 total, starting on record 13551, ending on 13555