NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
35938 | CVE-2014-9184 | ZTE ZXDSL 831CII allows remote attackers to bypass authentication via a direct request to (1) main.cgi, (2) adminpasswd.cgi, (3) userpasswd.cgi, (4) upload.cgi, (5) conprocess.cgi, or (6) connect.cgi. | 2 | 5 | Medium | 2017-01-19 | 2014-12-03 | View | |
14614 | CVE-2010-3198 | ZServer in Zope 2.10.x before 2.10.12 and 2.11.x before 2.11.7 allows remote attackers to cause a denial of service (crash of worker threads) via vectors that trigger uncaught exceptions. | 2 | 4.3 | Medium | 2017-01-18 | 2010-09-10 | View | |
46614 | CVE-2012-5486 | ZPublisher.HTTPRequest._scrubHeader in Zope 2 before 2.13.19, as used in Plone before 4.3 beta 1, allows remote attackers to inject arbitrary HTTP headers via a linefeed (LF) character. | 2 | 6.4 | Medium | 2017-01-19 | 2014-10-10 | View | |
66544 | CVE-2005-0794 | ZPanel 2.0 and 2.5 beta 10 does not remove or protect installation scripts after they have been used, which allows remote attackers to reinstall the software and possibly cause a denial of service via a direct request to install.php. | 2 | 6.4 | Medium | 2017-07-18 | 2017-07-10 | View | |
17410 | CVE-2016-1000217 | Zotpress plugin for WordPress SQLi in zp_get_account() | 2 | 7.5 | High | 2017-01-19 | 2016-12-22 | View |
Page 10 of 17672, showing 5 records out of 88360 total, starting on record 46, ending on 50