NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
25263  CVE-2015-3429  Cross-site scripting (XSS) vulnerability in example.html in Genericons before 3.3.1, as used in WordPress before 4.2.2, allows remote attackers to inject arbitrary web script or HTML via a fragment identifier.    4.3  Medium  2017-01-19  2016-12-07  View
25262  CVE-2015-3427  Quassel before 0.12.2 does not properly re-initialize the database session when the PostgreSQL database is restarted, which allows remote attackers to conduct SQL injection attacks via a (backslash) in a message. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-4422.    7.5  High  2017-01-19  2016-12-05  View
25261  CVE-2015-3422  Cross-site scripting (XSS) vulnerability in SearchBlox before 8.2.1 allows remote attackers to inject arbitrary web script or HTML via the menu2 parameter to admin/main.jsp.    4.3  Medium  2017-01-19  2016-12-05  View
25260  CVE-2015-3418  The ProcPutImage function in dix/dispatch.c in X.Org Server (aka xserver and xorg-server) before 1.16.4 allows attackers to cause a denial of service (divide-by-zero and crash) via a zero-height PutImage request.    Medium  2017-01-19  2016-12-15  View
25259  CVE-2015-3417  Use-after-free vulnerability in the ff_h264_free_tables function in libavcodec/h264.c in FFmpeg before 2.3.6 allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted H.264 data in an MP4 file, as demonstrated by an HTML VIDEO element that references H.264 data.    6.8  Medium  2017-01-19  2017-01-03  View

Page 3311 of 17672, showing 5 records out of 88360 total, starting on record 16551, ending on 16555

Actions