NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
35612 | CVE-2014-8606 | Directory traversal vulnerability in the XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla! allows remote administrators to read arbitrary files via a .. (dot dot) in the file parameter in a json_return action in the xcloner_show page to wp-admin/admin-ajax.php. | 2 | 4 | Medium | 2017-01-19 | 2015-06-11 | View | |
35868 | CVE-2014-9048 | The documents application in ownCloud Server 6.x before 6.0.6 and 7.x before 7.0.3 allows remote attackers to bypass the password-protection for shared files via the API. | 2 | 5 | Medium | 2017-01-19 | 2015-02-05 | View | |
36636 | CVE-2013-0284 | Ruby agent 3.2.0 through 3.5.2 serializes sensitive data when communicating with servers operated by New Relic, which allows remote attackers to obtain sensitive information (database credentials and SQL statements) by sniffing the network and deserializing the data. | 2 | 5 | Medium | 2017-01-18 | 2013-04-10 | View | |
37404 | CVE-2013-1156 | Directory traversal vulnerability in Cisco Prime Central for Hosted Collaboration Solution allows remote attackers to read arbitrary files via a crafted URL, aka Bug ID CSCud51034. | 2 | 5 | Medium | 2017-01-18 | 2013-05-01 | View | |
37916 | CVE-2013-1765 | Multiple cross-site scripting (XSS) vulnerabilities in jwplayer.swf in the smart-flv plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) link or (2) playerready parameter. | 2 | 4.3 | Medium | 2017-01-18 | 2016-12-07 | View |
Page 1033 of 17672, showing 5 records out of 88360 total, starting on record 5161, ending on 5165