NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
25637  CVE-2015-4146  The EAP-pwd peer implementation in hostapd and wpa_supplicant 1.0 through 2.4 does not clear the L (Length) and M (More) flags before determining if a response should be fragmented, which allows remote attackers to cause a denial of service (crash) via a crafted message.    Medium  2017-01-19  2016-07-29  View
25893  CVE-2015-4470  Off-by-one error in the inflate function in mszipd.c in libmspack before 0.5 allows remote attackers to cause a denial of service (buffer over-read and application crash) via a crafted CAB archive.    4.3  Medium  2017-01-19  2016-06-09  View
26149  CVE-2015-4828  Unspecified vulnerability in the PeopleSoft Enterprise FSCM component in Oracle PeopleSoft Products 9.2 allows remote authenticated users to affect confidentiality via vectors related to FIN Resource Management (Security).    Medium  2017-01-19  2016-12-23  View
26405  CVE-2015-5157  arch/x86/entry/entry_64.S in the Linux kernel before 4.1.6 on the x86_64 platform mishandles IRET faults in processing NMIs that occurred during userspace execution, which might allow local users to gain privileges by triggering an NMI.    7.2  High  2017-01-19  2016-12-21  View
26661  CVE-2015-5528  Cross-site scripting (XSS) vulnerability in the save_order function in class-floating-social-bar.php in the Floating Social Bar plugin before 1.1.6 for WordPress allows remote attackers to inject arbitrary web script or HTML via the items[] parameter in an fsb_save_order action to wp-admin/admin-ajax.php.    4.3  Medium  2017-01-19  2016-12-21  View

Page 2899 of 17672, showing 5 records out of 88360 total, starting on record 14491, ending on 14495

Actions