NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 27516 | CVE-2015-6665 | Cross-site scripting (XSS) vulnerability in the Ajax handler in Drupal 7.x before 7.39 and the Ctools module 6.x-1.x before 6.x-1.14 for Drupal allows remote attackers to inject arbitrary web script or HTML via vectors involving a whitelisted HTML element, possibly related to the "a" tag. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-23 | View | |
| 28284 | CVE-2015-7862 | Persistent Accelerite Radia Client Automation (formerly HP Client Automation) 7.9 through 9.1 before 2015-02-19 improperly implements the Role Based Access Control feature, which might allow remote attackers to modify an account"s role assignments via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2016-12-23 | View | |
| 28285 | CVE-2015-7863 | The default configuration of Persistent Accelerite Radia Client Automation (formerly HP Client Automation) 7.9 through 9.1 before 2015-02-19 enables a remote Notify capability without the Extended Notify Security features, which might allow remote attackers to bypass intended access restrictions via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2016-12-23 | View | |
| 27774 | CVE-2015-7030 | The Swift implementation in Apple Xcode before 7.1 mishandles type conversion, which has unspecified impact and attack vectors. | 2 | 7.5 | High | 2017-01-19 | 2016-12-23 | View | |
| 27775 | CVE-2015-7031 | The Web Service component in Apple OS X Server before 5.0.15 omits an unspecified HTTP header configuration, which allows remote attackers to bypass intended access restrictions via unknown vectors. | 2 | 5 | Medium | 2017-01-19 | 2016-12-23 | View |
Page 3123 of 17672, showing 5 records out of 88360 total, starting on record 15611, ending on 15615