NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 26778 | CVE-2015-5690 | The management console on Symantec Web Gateway (SWG) appliances with software before 5.2.2 DB 5.0.0.1277 allows remote authenticated users to bypass intended access restrictions and execute arbitrary commands by leveraging a "redirect." | 2 | 8.5 | High | 2017-01-19 | 2016-12-21 | View | |
| 26777 | CVE-2015-5689 | ghostexp.exe in Ghost Explorer Utility in Symantec Ghost Solutions Suite (GSS) before 3.0 HF2 12.0.0.8010 and Symantec Deployment Solution (DS) before 7.6 HF4 12.0.0.7045 performs improper sign-extend operations before array-element accesses, which allows remote attackers to execute arbitrary code, cause a denial of service (application crash), or possibly obtain sensitive information via a crafted Ghost image. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-21 | View | |
| 26776 | CVE-2015-5688 | Directory traversal vulnerability in lib/app/index.js in Geddy before 13.0.8 for Node.js allows remote attackers to read arbitrary files via a ..%2f (dot dot encoded slash) in the PATH_INFO to the default URI. | 2 | 5 | Medium | 2017-01-19 | 2015-09-04 | View | |
| 26775 | CVE-2015-5687 | system/session/drivers/cookie.php in Anchor CMS 0.9.x allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via a crafted serialized object in a cookie. | 2 | 7.5 | High | 2017-01-19 | 2015-10-06 | View | |
| 26774 | CVE-2015-5685 | The lazy_bdecode function in BitTorrent DHT bootstrap server (bootstrap-dht ) allows remote attackers to execute arbitrary code via a crafted packet, related to "improper indexing." | 2 | 7.5 | High | 2017-01-19 | 2015-08-13 | View |
Page 2998 of 17672, showing 5 records out of 88360 total, starting on record 14986, ending on 14990