NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
82335  CVE-2016-5726  Packages.php in Simple Machines Forum (SMF) 2.1 allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via the themechanges array parameter.    7.5  High  2017-02-28  2017-02-23  View
82334  CVE-2016-5100  Froxlor before 0.9.35 uses the PHP rand function for random number generation, which makes it easier for remote attackers to guess the password reset token by predicting a value.    Medium  2017-02-28  2017-02-24  View
82333  CVE-2016-4988  Cross-site scripting (XSS) vulnerability in the Build Failure Analyzer plugin before 1.16.0 in Jenkins allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter.    4.3  Medium  2017-02-15  2017-02-13  View
82332  CVE-2016-4987  Directory traversal vulnerability in the Image Gallery plugin before 1.4 in Jenkins allows remote attackers to list arbitrary directories and read arbitrary files via unspecified form fields.    Medium  2017-02-15  2017-02-15  View
82331  CVE-2016-4986  Directory traversal vulnerability in the TAP plugin before 1.25 in Jenkins allows remote attackers to read arbitrary files via an unspecified parameter.    Medium  2017-02-15  2017-02-15  View

Page 1206 of 17672, showing 5 records out of 88360 total, starting on record 6026, ending on 6030

Actions