NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 27972 | CVE-2015-7337 | The editor in IPython Notebook before 3.2.2 and Jupyter Notebook 4.0.x before 4.0.5 allows remote attackers to execute arbitrary JavaScript code via a crafted file, which triggers a redirect to files/, related to MIME types. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-07 | View | |
| 81972 | CVE-2015-7331 | The mcollective-puppet-agent plugin before 1.11.1 for Puppet allows remote attackers to execute arbitrary code via vectors involving the --server argument. | 2 | 4.9 | Medium | 2017-02-28 | 2017-02-24 | View | |
| 27971 | CVE-2015-7330 | Puppet Enterprise 2015.3 before 2015.3.1 allows remote attackers to bypass a host whitelist protection mechanism by leveraging the Puppet communications protocol. | 2 | 6.5 | Medium | 2017-01-19 | 2016-04-13 | View | |
| 27970 | CVE-2015-7328 | Puppet Server in Puppet Enterprise before 3.8.x before 3.8.3 and 2015.2.x before 2015.2.3 uses world-readable permissions for the private key of the Certification Authority (CA) certificate during the initial installation and configuration, which might allow local users to obtain sensitive information via unspecified vectors. | 2 | 1.9 | Low | 2017-01-19 | 2016-01-11 | View | |
| 27969 | CVE-2015-7327 | Mozilla Firefox before 41.0 does not properly restrict the availability of High Resolution Time API times, which allows remote attackers to track last-level cache access, and consequently obtain sensitive information, via crafted JavaScript code that makes performance.now calls. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-21 | View |
Page 2755 of 17672, showing 5 records out of 88360 total, starting on record 13771, ending on 13775