NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
23827 | CVE-2015-1547 | The NeXTDecode function in tif_next.c in LibTIFF allows remote attackers to cause a denial of service (uninitialized memory access) via a crafted TIFF image, as demonstrated by libtiff5.tif. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View | |
24083 | CVE-2015-1879 | Cross-site scripting (XSS) vulnerability in the Google Doc Embedder plugin before 2.5.19 for WordPress allows remote attackers to inject arbitrary web script or HTML via the profile parameter in an edit action in the gde-settings page to wp-admin/options-general.php. | 2 | 4.3 | Medium | 2017-01-19 | 2015-02-20 | View | |
24339 | CVE-2015-2223 | Multiple cross-site scripting (XSS) vulnerabilities in the web-based console management interface in Palo Alto Networks Traps (formerly Cyvera Endpoint Protection) 3.1.2.1546 allow remote attackers to inject arbitrary web script or HTML via the (1) Arguments, (2) FileName, or (3) URL parameter in a SOAP request. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-02 | View | |
24851 | CVE-2015-2873 | Trend Micro Deep Discovery Inspector (DDI) on Deep Discovery Threat appliances with software before 3.5.1477, 3.6.x before 3.6.1217, 3.7.x before 3.7.1248, 3.8.x before 3.8.1263, and other versions allows remote attackers to obtain sensitive information or change the configuration via a direct request to the (1) system log URL, (2) whitelist URL, or (3) blacklist URL. | 2 | 5.5 | Medium | 2017-01-19 | 2016-11-28 | View | |
25363 | CVE-2015-3716 | Spotlight in Apple OS X before 10.10.4 allows attackers to execute arbitrary commands via a crafted name of a photo file within the local photo library. | 2 | 4.4 | Medium | 2017-01-19 | 2016-11-28 | View |
Page 705 of 17672, showing 5 records out of 88360 total, starting on record 3521, ending on 3525