NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
23088  CVE-2015-0624  The web framework in Cisco AsyncOS on Email Security Appliance (ESA), Content Security Management Appliance (SMA), and Web Security Appliance (WSA) devices allows remote attackers to trigger redirects via a crafted HTTP header, aka Bug IDs CSCur44412, CSCur44415, CSCur89630, CSCur89636, CSCur89633, and CSCur89639.    4.3  Medium  2017-01-19  2015-11-27  View
23344  CVE-2015-0922  McAfee ePolicy Orchestrator (ePO) before 4.6.9 and 5.x before 5.1.2 uses the same secret key across different customers" installations, which allows attackers to obtain the administrator password by leveraging knowledge of the encrypted password.    Medium  2017-01-19  2017-01-02  View
23600  CVE-2015-1238  Skia, as used in Google Chrome before 42.0.2311.90, allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via unknown vectors.    7.5  High  2017-01-19  2017-01-02  View
23856  CVE-2015-1585  Fat Free CRM before 0.13.6 allows remote attackers to conduct cross-site request forgery (CSRF) attacks via a request without the authenticity_token, as demonstrated by a crafted HTML page that creates a new administrator account.    6.8  Medium  2017-01-19  2015-02-20  View
24112  CVE-2015-1909  The XML parser in the Reference Data Management component in the server in IBM InfoSphere Master Data Management (MDM) 10.1 before IF1, 11.0 before FP3, 11.3, and 11.4 before FP2 allows remote attackers to read arbitrary files, and consequently obtain administrative access, via an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.    Medium  2017-01-19  2015-05-26  View

Page 3305 of 17672, showing 5 records out of 88360 total, starting on record 16521, ending on 16525

Actions