NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
24071 | CVE-2015-1851 | OpenStack Cinder before 2014.1.5 (icehouse), 2014.2.x before 2014.2.4 (juno), and 2015.1.x before 2015.1.1 (kilo) allows remote authenticated users to read arbitrary files via a crafted qcow2 signature in an image to the upload-to-image command. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-27 | View | |
24327 | CVE-2015-2209 | DLGuard 4.5 allows remote attackers to obtain the installation path via the c parameter to index.php. | 2 | 5 | Medium | 2017-01-19 | 2016-12-02 | View | |
24583 | CVE-2015-2559 | Drupal 6.x before 6.35 and 7.x before 7.35 allows remote authenticated users to reset the password of other accounts by leveraging an account with the same password hash as another account and a crafted password reset URL. | 2 | 3.5 | Low | 2017-01-19 | 2016-08-24 | View | |
24839 | CVE-2015-2861 | Cross-site request forgery (CSRF) vulnerability in Vesta Control Panel before 0.9.8-14 allows remote attackers to hijack the authentication of arbitrary users. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-02 | View | |
25095 | CVE-2015-3196 | ssl/s3_clnt.c in OpenSSL 1.0.0 before 1.0.0t, 1.0.1 before 1.0.1p, and 1.0.2 before 1.0.2d, when used for a multi-threaded client, writes the PSK identity hint to an incorrect data structure, which allows remote servers to cause a denial of service (race condition and double free) via a crafted ServerKeyExchange message. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-30 | View |
Page 512 of 17672, showing 5 records out of 88360 total, starting on record 2556, ending on 2560