NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
27972  CVE-2015-7337  The editor in IPython Notebook before 3.2.2 and Jupyter Notebook 4.0.x before 4.0.5 allows remote attackers to execute arbitrary JavaScript code via a crafted file, which triggers a redirect to files/, related to MIME types.    6.8  Medium  2017-01-19  2016-12-07  View
81972  CVE-2015-7331  The mcollective-puppet-agent plugin before 1.11.1 for Puppet allows remote attackers to execute arbitrary code via vectors involving the --server argument.    4.9  Medium  2017-02-28  2017-02-24  View
27971  CVE-2015-7330  Puppet Enterprise 2015.3 before 2015.3.1 allows remote attackers to bypass a host whitelist protection mechanism by leveraging the Puppet communications protocol.    6.5  Medium  2017-01-19  2016-04-13  View
27970  CVE-2015-7328  Puppet Server in Puppet Enterprise before 3.8.x before 3.8.3 and 2015.2.x before 2015.2.3 uses world-readable permissions for the private key of the Certification Authority (CA) certificate during the initial installation and configuration, which might allow local users to obtain sensitive information via unspecified vectors.    1.9  Low  2017-01-19  2016-01-11  View
27969  CVE-2015-7327  Mozilla Firefox before 41.0 does not properly restrict the availability of High Resolution Time API times, which allows remote attackers to track last-level cache access, and consequently obtain sensitive information, via crafted JavaScript code that makes performance.now calls.    4.3  Medium  2017-01-19  2016-12-21  View

Page 2755 of 17672, showing 5 records out of 88360 total, starting on record 13771, ending on 13775

Actions