NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
23344  CVE-2015-0922  McAfee ePolicy Orchestrator (ePO) before 4.6.9 and 5.x before 5.1.2 uses the same secret key across different customers" installations, which allows attackers to obtain the administrator password by leveraging knowledge of the encrypted password.    Medium  2017-01-19  2017-01-02  View
23600  CVE-2015-1238  Skia, as used in Google Chrome before 42.0.2311.90, allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via unknown vectors.    7.5  High  2017-01-19  2017-01-02  View
23856  CVE-2015-1585  Fat Free CRM before 0.13.6 allows remote attackers to conduct cross-site request forgery (CSRF) attacks via a request without the authenticity_token, as demonstrated by a crafted HTML page that creates a new administrator account.    6.8  Medium  2017-01-19  2015-02-20  View
24112  CVE-2015-1909  The XML parser in the Reference Data Management component in the server in IBM InfoSphere Master Data Management (MDM) 10.1 before IF1, 11.0 before FP3, 11.3, and 11.4 before FP2 allows remote attackers to read arbitrary files, and consequently obtain administrative access, via an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.    Medium  2017-01-19  2015-05-26  View
24368  CVE-2015-2285  The logrotation script (/etc/cron.daily/upstart) in the Ubuntu Upstart package before 1.13.2-0ubuntu9, as used in Ubuntu Vivid 15.04, allows local users to execute arbitrary commands and gain privileges via a crafted file in /run/user/*/upstart/sessions/.    7.2  High  2017-01-19  2015-03-13  View

Page 3290 of 17672, showing 5 records out of 88360 total, starting on record 16446, ending on 16450

Actions