NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 26504 | CVE-2015-5312 | The xmlStringLenDecodeEntities function in parser.c in libxml2 before 2.9.3 does not properly prevent entity expansion, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted XML data, a different vulnerability than CVE-2014-3660. | 2 | 7.1 | High | 2017-01-19 | 2016-12-07 | View | |
| 26503 | CVE-2015-5311 | PowerDNS (aka pdns) Authoritative Server 3.4.4 before 3.4.7 allows remote attackers to cause a denial of service (assertion failure and server crash) via crafted query packets. | 2 | 5 | Medium | 2017-01-19 | 2016-12-07 | View | |
| 26502 | CVE-2015-5310 | Wi-Fi in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows remote attackers to obtain sensitive Wi-Fi information by leveraging access to the local physical environment, aka internal bug 25266660. | 2 | 3.3 | Low | 2017-01-19 | 2016-12-07 | View | |
| 26501 | CVE-2015-5309 | Integer overflow in the terminal emulator in PuTTY before 0.66 allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via an ECH (erase characters) escape sequence with a large parameter value, which triggers a buffer underflow. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-07 | View | |
| 26500 | CVE-2015-5308 | Multiple SQL injection vulnerabilities in cs_admin_users.php in the wp-championship plugin 5.8 for WordPress allow remote attackers to execute arbitrary SQL commands via the (1) user, (2) isadmin, (3) mail service, (4) mailresceipt, (5) stellv, (6) champtipp, (7) tippgroup, or (8) userid parameter. | 2 | 7.5 | High | 2017-01-19 | 2015-11-03 | View |
Page 3055 of 17672, showing 5 records out of 88360 total, starting on record 15271, ending on 15275