NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
26661  CVE-2015-5528  Cross-site scripting (XSS) vulnerability in the save_order function in class-floating-social-bar.php in the Floating Social Bar plugin before 1.1.6 for WordPress allows remote attackers to inject arbitrary web script or HTML via the items[] parameter in an fsb_save_order action to wp-admin/admin-ajax.php.    4.3  Medium  2017-01-19  2016-12-21  View
21798  CVE-2016-7284  Microsoft Internet Explorer 10 and 11 allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka "Internet Explorer Information Disclosure Vulnerability."    4.3  Medium  2017-01-19  2016-12-21  View
23590  CVE-2015-1228  The RenderCounter::updateCounter function in core/rendering/RenderCounter.cpp in Blink, as used in Google Chrome before 41.0.2272.76, does not force a relayout operation and consequently does not initialize memory for a data structure, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted Cascading Style Sheets (CSS) token sequence.    7.5  High  2017-01-19  2016-12-21  View
25126  CVE-2015-3236  cURL and libcurl 7.40.0 through 7.42.1 send the HTTP Basic authentication credentials for a previous connection when reusing a reset (curl_easy_reset) connection handle to send a request to the same host name, which allows remote attackers to obtain sensitive information via unspecified vectors.    Medium  2017-01-19  2016-12-21  View
26918  CVE-2015-5855  Apple iOS before 9 allows attackers to discover the e-mail address of a player via a crafted Game Center app.    4.3  Medium  2017-01-19  2016-12-21  View

Page 3194 of 17672, showing 5 records out of 88360 total, starting on record 15966, ending on 15970

Actions