NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
88253 | CVE-2017-9891 | IrfanView version 4.44 (32bit) with FPX Plugin 4.46 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .fpx file, related to Data from Faulting Address is used as one or more arguments in a subsequent Function Call starting at FPX!FPX_GetScanDevicePropertyGroup+0x0000000000007053. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-11 | View | |
28349 | CVE-2015-7989 | Cross-site scripting (XSS) vulnerability in the user list table in WordPress before 4.3.1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted e-mail address, a different vulnerability than CVE-2015-5714. | 2 | 3.5 | Low | 2017-07-18 | 2017-07-17 | View | |
66238 | CVE-2005-0481 | TrackerCam 5.12 and earlier allows remote attackers to read log files via the fn parameter in a direct request to the ComGetLogFile.php3 script. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
66494 | CVE-2005-0744 | The web GUI for Novell iChain 2.2 and 2.3 SP2 and SP3 allows attackers to hijack sessions and gain administrator privileges by (1) sniffing the connection on TCP port 51100 and replaying the authentication information or (2) obtaining and replaying the PCZQX02 authentication cookie from the browser. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
66750 | CVE-2005-1001 | PHP-Nuke 7.6 allows remote attackers to obtain sensitive information via direct requests to (1) the Surveys module with the file parameter set to comments or (2) 3D-Fantasy/theme.php, which leaks the full pathname of the web server in a PHP error message. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 1021 of 17672, showing 5 records out of 88360 total, starting on record 5101, ending on 5105