NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
26418  CVE-2015-5189  Race condition in pcsd in PCS 0.9.139 and earlier uses a global variable to validate usernames, which allows remote authenticated users to gain privileges by sending a command that is checked for security after another user is authenticated.    4.9  Medium  2017-01-19  2015-09-04  View
26417  CVE-2015-5188  Cross-site request forgery (CSRF) vulnerability in the Web Console (web-console) in Red Hat Enterprise Application Platform before 6.4.4 and WildFly (formerly JBoss Application Server) before 2.0.0.CR9 allows remote attackers to hijack the authentication of administrators for requests that make arbitrary changes to an instance via vectors involving a file upload using a multipart/form-data submission.    6.8  Medium  2017-01-19  2015-10-28  View
26416  CVE-2015-5185  The lookupProviders function in providerMgr.c in sblim-sfcb 1.3.4 and 1.3.18 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via an empty className in a packet.    Medium  2017-01-19  2016-12-07  View
87461  CVE-2015-5180  res_query in libresolv in glibc before 2.25 allows remote attackers to cause a denial of service (NULL pointer dereference and process crash).          2017-06-28  2017-06-27  View
26415  CVE-2015-5178  The Management Console in Red Hat Enterprise Application Platform before 6.4.4 and WildFly (formerly JBoss Application Server) does not send an X-Frame-Options HTTP header, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web page that contains a (1) FRAME or (2) IFRAME element.    4.3  Medium  2017-01-19  2015-10-28  View

Page 3073 of 17672, showing 5 records out of 88360 total, starting on record 15361, ending on 15365

Actions