NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
88347  CVE-2016-10200  Race condition in the L2TPv3 IP Encapsulation feature in the Linux kernel before 4.8.14 allows local users to gain privileges or cause a denial of service (use-after-free) by making multiple bind system calls without properly ascertaining whether a socket has the SOCK_ZAPPED status, related to net/l2tp/l2tp_ip.c and net/l2tp/l2tp_ip6.c.    6.9  Medium  2017-07-18  2017-07-17  View
23067  CVE-2015-0603  Cisco Unified IP 9900 phones with firmware 9.4(.1) and earlier use weak permissions for unspecified files, which allows local users to cause a denial of service (persistent hang or reboot) by writing to a phone"s filesystem, aka Bug ID CSCup90474.    4.6  Medium  2017-01-19  2015-02-19  View
23835  CVE-2015-1562  Multiple cross-site scripting (XSS) vulnerabilities in Saurus CMS 4.7.0 allow remote attackers to inject arbitrary web script or HTML via the (1) search parameter to admin/user_management.php, (2) data_search parameter to /admin/profile_data.php, or (3) filter parameter to error_log.php.    4.3  Medium  2017-01-19  2015-02-09  View
24091  CVE-2015-1887  IBM WebSphere Portal 7.0.0 through 7.0.0.2 CF29, 8.0.0 before 8.0.0.1 CF17, and 8.5.0 before CF06 allows remote attackers to obtain sensitive Java Content Repository (JCR) information via a crafted request.    Medium  2017-01-19  2016-08-03  View
24603  CVE-2015-2582  Unspecified vulnerability in Oracle MySQL Server 5.5.43 and earlier and 5.6.24 and earlier allows remote authenticated users to affect availability via vectors related to GIS.    Medium  2017-01-19  2016-12-21  View

Page 991 of 17672, showing 5 records out of 88360 total, starting on record 4951, ending on 4955

Actions