NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
23301 | CVE-2015-0875 | The Ogaki Kyoritsu Bank Smartphone Passbook application 1.0.0 for Android creates a log file containing input data from the user, which allows attackers to obtain sensitive information by reading a file. | 2 | 1.8 | Low | 2017-01-19 | 2015-02-19 | View | |
23557 | CVE-2015-1180 | Cross-site scripting (XSS) vulnerability in the Web Reports in EventSentry 3.1.0 allows remote attackers to inject arbitrary web script or HTML via the pageId parameter to networktile/bullet. | 2 | 4.3 | Medium | 2017-01-19 | 2015-01-26 | View | |
23813 | CVE-2015-1512 | Multiple cross-site scripting (XSS) vulnerabilities in FancyFon FAMOC before 3.17.4 allow remote attackers to inject arbitrary web script or HTML via the (1) LoginForm[username] to ui/system/login or the (2) order or (3) myorgs to index.php. | 2 | 4.3 | Medium | 2017-01-19 | 2015-02-09 | View | |
24069 | CVE-2015-1846 | unzoo allows remote attackers to cause a denial of service (infinite loop and resource consumption) via unspecified vectors to the (1) ExtrArch or (2) ListArch function, related to pointer handling. | 2 | 7.8 | High | 2017-01-19 | 2016-08-02 | View | |
24325 | CVE-2015-2206 | libraries/select_lang.lib.php in phpMyAdmin 4.0.x before 4.0.10.9, 4.2.x before 4.2.13.2, and 4.3.x before 4.3.11.1 includes invalid language values in unknown-language error responses that contain a CSRF token and may be sent with HTTP compression, which makes it easier for remote attackers to conduct a BREACH attack and determine this token via a series of crafted requests. | 2 | 5 | Medium | 2017-01-19 | 2016-12-27 | View |
Page 726 of 17672, showing 5 records out of 88360 total, starting on record 3626, ending on 3630