NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 26661 | CVE-2015-5528 | Cross-site scripting (XSS) vulnerability in the save_order function in class-floating-social-bar.php in the Floating Social Bar plugin before 1.1.6 for WordPress allows remote attackers to inject arbitrary web script or HTML via the items[] parameter in an fsb_save_order action to wp-admin/admin-ajax.php. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-21 | View | |
| 21798 | CVE-2016-7284 | Microsoft Internet Explorer 10 and 11 allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka "Internet Explorer Information Disclosure Vulnerability." | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-21 | View | |
| 23590 | CVE-2015-1228 | The RenderCounter::updateCounter function in core/rendering/RenderCounter.cpp in Blink, as used in Google Chrome before 41.0.2272.76, does not force a relayout operation and consequently does not initialize memory for a data structure, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted Cascading Style Sheets (CSS) token sequence. | 2 | 7.5 | High | 2017-01-19 | 2016-12-21 | View | |
| 25126 | CVE-2015-3236 | cURL and libcurl 7.40.0 through 7.42.1 send the HTTP Basic authentication credentials for a previous connection when reusing a reset (curl_easy_reset) connection handle to send a request to the same host name, which allows remote attackers to obtain sensitive information via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2016-12-21 | View | |
| 26918 | CVE-2015-5855 | Apple iOS before 9 allows attackers to discover the e-mail address of a player via a crafted Game Center app. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-21 | View |
Page 3194 of 17672, showing 5 records out of 88360 total, starting on record 15966, ending on 15970