NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 26666 | CVE-2015-5535 | Cross-site scripting (XSS) vulnerability in the qTranslate plugin 2.5.39 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the edit parameter in the qtranslate page to wp-admin/options-general.php. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-21 | View | |
| 26922 | CVE-2015-5859 | The CFNetwork HTTPProtocol component in Apple iOS before 9 and OS X before 10.11 does not properly recognize the HSTS preload list during a Safari private-browsing session, which makes it easier for remote attackers to obtain sensitive information by sniffing the network. | 2 | 4.3 | Medium | 2017-01-19 | 2015-11-30 | View | |
| 27178 | CVE-2015-6171 | The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gold and 1511 allows local users to gain privileges via a crafted application, aka "Windows Kernel Memory Elevation of Privilege Vulnerability," a different vulnerability than CVE-2015-6173 and CVE-2015-6174. | 2 | 7.2 | High | 2017-01-19 | 2016-12-07 | View | |
| 27434 | CVE-2015-6547 | The management console on Symantec Web Gateway (SWG) appliances with software before 5.2.2 DB 5.0.0.1277 allows remote authenticated users to execute arbitrary commands at boot time via unspecified vectors. | 2 | 8.3 | High | 2017-01-19 | 2016-12-21 | View | |
| 27690 | CVE-2015-6914 | Absolute path traversal vulnerability in SiteFactory CMS 5.5.9 allows remote attackers to read arbitrary files via a full pathname in the file parameter to assets/download.aspx. | 2 | 7.8 | High | 2017-01-19 | 2015-09-14 | View |
Page 3192 of 17672, showing 5 records out of 88360 total, starting on record 15956, ending on 15960