NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
25941  CVE-2015-4518  The Reader View implementation in Mozilla Firefox before 42.0 has an improper whitelist, which makes it easier for remote attackers to bypass the Content Security Policy (CSP) protection mechanism and conduct cross-site scripting (XSS) attacks via vectors involving SVG animations and the about:reader URL.    4.3  Medium  2017-01-19  2016-12-07  View
26453  CVE-2015-5251  OpenStack Image Service (Glance) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) allow remote authenticated users to change the status of their images and bypass access restrictions via the HTTP x-image-meta-status header to images/*.    5.5  Medium  2017-01-19  2015-10-27  View
28245  CVE-2015-7798  Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2015-7795, CVE-2015-7796, CVE-2015-7797, CVE-2016-1149, and CVE-2016-1150.    4.3  Medium  2017-01-19  2016-02-22  View
29013  CVE-2014-0071  PackStack in Red Hat OpenStack 4.0 does not enforce the default security groups when deployed to Neutron, which allows remote attackers to bypass intended access restrictions and make unauthorized connections.    6.4  Medium  2017-01-19  2014-04-17  View
29525  CVE-2014-0641  Cross-site request forgery (CSRF) vulnerability in EMC RSA Archer GRC Platform 5.x before 5.5 SP1 allows remote attackers to hijack the authentication of arbitrary users.    6.8  Medium  2017-01-19  2017-01-06  View

Page 3067 of 17672, showing 5 records out of 88360 total, starting on record 15331, ending on 15335

Actions