NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 25263 | CVE-2015-3429 | Cross-site scripting (XSS) vulnerability in example.html in Genericons before 3.3.1, as used in WordPress before 4.2.2, allows remote attackers to inject arbitrary web script or HTML via a fragment identifier. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-07 | View | |
| 25262 | CVE-2015-3427 | Quassel before 0.12.2 does not properly re-initialize the database session when the PostgreSQL database is restarted, which allows remote attackers to conduct SQL injection attacks via a (backslash) in a message. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-4422. | 2 | 7.5 | High | 2017-01-19 | 2016-12-05 | View | |
| 25261 | CVE-2015-3422 | Cross-site scripting (XSS) vulnerability in SearchBlox before 8.2.1 allows remote attackers to inject arbitrary web script or HTML via the menu2 parameter to admin/main.jsp. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-05 | View | |
| 25260 | CVE-2015-3418 | The ProcPutImage function in dix/dispatch.c in X.Org Server (aka xserver and xorg-server) before 1.16.4 allows attackers to cause a denial of service (divide-by-zero and crash) via a zero-height PutImage request. | 2 | 5 | Medium | 2017-01-19 | 2016-12-15 | View | |
| 25259 | CVE-2015-3417 | Use-after-free vulnerability in the ff_h264_free_tables function in libavcodec/h264.c in FFmpeg before 2.3.6 allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted H.264 data in an MP4 file, as demonstrated by an HTML VIDEO element that references H.264 data. | 2 | 6.8 | Medium | 2017-01-19 | 2017-01-03 | View |
Page 3311 of 17672, showing 5 records out of 88360 total, starting on record 16551, ending on 16555