NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
23591  CVE-2015-1229  net/http/proxy_client_socket.cc in Google Chrome before 41.0.2272.76 does not properly handle a 407 (aka Proxy Authentication Required) HTTP status code accompanied by a Set-Cookie header, which allows remote proxy servers to conduct cookie-injection attacks via a crafted response.    Medium  2017-01-19  2016-12-21  View
25127  CVE-2015-3237  The smb_request_state function in cURL and libcurl 7.40.0 through 7.42.1 allows remote SMB servers to obtain sensitive information from memory or cause a denial of service (out-of-bounds read and crash) via crafted length and offset values.    6.4  Medium  2017-01-19  2016-12-21  View
25895  CVE-2015-4472  Off-by-one error in the READ_ENCINT macro in chmd.c in libmspack before 0.5 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted CHM file.    6.8  Medium  2017-01-19  2016-12-21  View
26919  CVE-2015-5856  The Application Store component in Apple iOS before 9 allows remote attackers to cause a denial of service to an enterprise-signed app via a crafted ITMS URL.    4.3  Medium  2017-01-19  2016-12-21  View
30759  CVE-2014-2326  Cross-site scripting (XSS) vulnerability in cdef.php in Cacti 0.8.7g, 0.8.8b, and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2017-01-19  2016-12-21  View

Page 3195 of 17672, showing 5 records out of 88360 total, starting on record 15971, ending on 15975

Actions