NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 27429 | CVE-2015-6537 | SQL injection vulnerability in the login page in Epiphany Cardio Server 3.3 allows remote attackers to execute arbitrary SQL commands via a crafted URL. | 2 | 7.5 | High | 2017-01-19 | 2015-12-28 | View | |
| 27685 | CVE-2015-6909 | Cross-site scripting (XSS) vulnerability in the "Create download task via file upload" feature in Synology Download Station before 3.5-2962 allows remote attackers to inject arbitrary web script or HTML via the name element in the Info dictionary in a torrent file. | 2 | 4.3 | Medium | 2017-01-19 | 2015-09-14 | View | |
| 27941 | CVE-2015-7283 | The web administration interface on ZyXEL NBG-418N devices with firmware 1.00(AADZ.3)C0 has a default password of 1234 for the admin account, which allows remote attackers to obtain administrative privileges by leveraging a LAN session. | 2 | 9.3 | High | 2017-01-19 | 2016-12-07 | View | |
| 28197 | CVE-2015-7726 | Cross-site scripting (XSS) vulnerability in role deletion in the Web-based Development Workbench in SAP HANA DB 1.00.091.00.1418659308 allows remote authenticated users to inject arbitrary web script or HTML via the role name, aka SAP Security Note 2153898. | 2 | 3.5 | Low | 2017-01-19 | 2015-10-16 | View | |
| 28453 | CVE-2015-8148 | The LDAP service in Symantec Encryption Management Server (SEMS) 3.3.2 before MP12 allows remote attackers to obtain sensitive information about administrator accounts via a modified request. | 2 | 5 | Medium | 2017-01-19 | 2016-12-05 | View |
Page 3097 of 17672, showing 5 records out of 88360 total, starting on record 15481, ending on 15485