NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 28197 | CVE-2015-7726 | Cross-site scripting (XSS) vulnerability in role deletion in the Web-based Development Workbench in SAP HANA DB 1.00.091.00.1418659308 allows remote authenticated users to inject arbitrary web script or HTML via the role name, aka SAP Security Note 2153898. | 2 | 3.5 | Low | 2017-01-19 | 2015-10-16 | View | |
| 28453 | CVE-2015-8148 | The LDAP service in Symantec Encryption Management Server (SEMS) 3.3.2 before MP12 allows remote attackers to obtain sensitive information about administrator accounts via a modified request. | 2 | 5 | Medium | 2017-01-19 | 2016-12-05 | View | |
| 28709 | CVE-2015-8616 | Use-after-free vulnerability in the Collator::sortWithSortKeys function in ext/intl/collator/collator_sort.c in PHP 7.x before 7.0.1 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact by leveraging the relationships between a key buffer and a destroyed array. | 2 | 7.5 | High | 2017-01-19 | 2016-01-21 | View | |
| 28965 | CVE-2014-0008 | lib/adminlib.php in Moodle through 2.3.11, 2.4.x before 2.4.8, 2.5.x before 2.5.4, and 2.6.x before 2.6.1 logs cleartext passwords, which allows remote authenticated administrators to obtain sensitive information by reading the Config Changes Report. | 2 | 4 | Medium | 2017-01-19 | 2014-02-21 | View | |
| 29221 | CVE-2014-0322 | Use-after-free vulnerability in Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code via vectors involving crafted JavaScript code, CMarkup, and the onpropertychange attribute of a script element, as exploited in the wild in January and February 2014. | 2 | 9.3 | High | 2017-01-19 | 2016-09-02 | View |
Page 2901 of 17672, showing 5 records out of 88360 total, starting on record 14501, ending on 14505