NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
25626 | CVE-2015-4134 | Open redirect vulnerability in goto.php in phpwind 8.7 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the url parameter. | 2 | 5.8 | Medium | 2017-01-19 | 2016-12-30 | View | |
26138 | CVE-2015-4817 | Unspecified vulnerability in Oracle Sun Solaris 11.2 allows local users to affect confidentiality, integrity, and availability via vectors related to Kernel Zones virtualized NIC driver. | 2 | 6.2 | Medium | 2017-01-19 | 2016-12-23 | View | |
26650 | CVE-2015-5511 | The HybridAuth Social Login module 7.x-2.x before 7.x-2.13 for Drupal allows remote attackers to bypass the user registration by administrator only configuration and create an account via a social login. | 2 | 5 | Medium | 2017-01-19 | 2016-11-28 | View | |
27930 | CVE-2015-7252 | Cross-site scripting (XSS) vulnerability in cgi-bin/webproc on ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE allows remote attackers to inject arbitrary web script or HTML via the errorpage parameter. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View | |
28698 | CVE-2015-8601 | The Chat Room module 7.x-2.x before 7.x-2.2 for Drupal does not properly check permissions when setting up a websocket for chat messages, which allows remote attackers to bypass intended access restrictions and read messages from arbitrary Chat Rooms via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2015-12-18 | View |
Page 953 of 17672, showing 5 records out of 88360 total, starting on record 4761, ending on 4765