NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
24594 | CVE-2015-2573 | Unspecified vulnerability in Oracle MySQL Server 5.5.41 and earlier, and 5.6.22 and earlier, allows remote authenticated users to affect availability via vectors related to DDL. | 2 | 4 | Medium | 2017-01-19 | 2017-01-02 | View | |
24850 | CVE-2015-2872 | Multiple cross-site scripting (XSS) vulnerabilities in Trend Micro Deep Discovery Inspector (DDI) on Deep Discovery Threat appliances with software before 3.5.1477, 3.6.x before 3.6.1217, 3.7.x before 3.7.1248, 3.8.x before 3.8.1263, and other versions allow remote attackers to inject arbitrary web script or HTML via (1) crafted input to index.php that is processed by certain Internet Explorer 7 configurations or (2) crafted input to the widget feature. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View | |
25106 | CVE-2015-3212 | Race condition in net/sctp/socket.c in the Linux kernel before 4.1.2 allows local users to cause a denial of service (list corruption and panic) via a rapid series of system calls related to sockets, as demonstrated by setsockopt calls. | 2 | 4.9 | Medium | 2017-01-19 | 2016-12-21 | View | |
25362 | CVE-2015-3715 | The code-signing implementation in Apple OS X before 10.10.4 does not properly consider libraries that are external to an application bundle, which allows attackers to bypass intended launch restrictions via a crafted library. | 2 | 6.8 | Medium | 2017-01-19 | 2016-11-28 | View | |
25618 | CVE-2015-4112 | The Management Console in BlackBerry Enterprise Server (BES) 12 before 12.2 does not properly restrict use of FRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web site, related to a "cross frame scripting" issue. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-07 | View |
Page 669 of 17672, showing 5 records out of 88360 total, starting on record 3341, ending on 3345