NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
24327 | CVE-2015-2209 | DLGuard 4.5 allows remote attackers to obtain the installation path via the c parameter to index.php. | 2 | 5 | Medium | 2017-01-19 | 2016-12-02 | View | |
24583 | CVE-2015-2559 | Drupal 6.x before 6.35 and 7.x before 7.35 allows remote authenticated users to reset the password of other accounts by leveraging an account with the same password hash as another account and a crafted password reset URL. | 2 | 3.5 | Low | 2017-01-19 | 2016-08-24 | View | |
24839 | CVE-2015-2861 | Cross-site request forgery (CSRF) vulnerability in Vesta Control Panel before 0.9.8-14 allows remote attackers to hijack the authentication of arbitrary users. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-02 | View | |
25095 | CVE-2015-3196 | ssl/s3_clnt.c in OpenSSL 1.0.0 before 1.0.0t, 1.0.1 before 1.0.1p, and 1.0.2 before 1.0.2d, when used for a multi-threaded client, writes the PSK identity hint to an incorrect data structure, which allows remote servers to cause a denial of service (race condition and double free) via a crafted ServerKeyExchange message. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-30 | View | |
25351 | CVE-2015-3704 | runner in Install.framework in the Install Framework Legacy subsystem in Apple OS X before 10.10.4 does not properly drop privileges, which allows attackers to execute arbitrary code in a privileged context via a crafted app. | 2 | 9.3 | High | 2017-01-19 | 2016-12-21 | View |
Page 863 of 17672, showing 5 records out of 88360 total, starting on record 4311, ending on 4315