NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
46684 | CVE-2012-5564 | android-tools 4.1.1 in Android Debug Bridge (ADB) allows local users to overwrite arbitrary files via a symlink attack on /tmp/adb.log. | 2 | 3.3 | Low | 2017-01-19 | 2013-02-19 | View | |
23622 | CVE-2015-1261 | android/java/src/org/chromium/chrome/browser/WebsiteSettingsPopup.java in Google Chrome before 43.0.2357.65 on Android does not properly restrict use of a URL"s fragment identifier during construction of a page-info popup, which allows remote attackers to spoof the URL bar or deliver misleading popup content via crafted text. | 2 | 5 | Medium | 2017-01-19 | 2017-01-02 | View | |
35616 | CVE-2014-8610 | AndroidManifest.xml in Android before 5.0.0 does not require the SEND_SMS permission for the SmsReceiver receiver, which allows attackers to send stored SMS messages, and consequently transmit arbitrary new draft SMS messages or trigger additional per-message charges from a network operator for old messages, via a crafted application that broadcasts an intent with the com.android.mms.transaction.MESSAGE_SENT action, aka Bug 17671795. | 2 | 3.3 | Low | 2017-01-19 | 2014-12-16 | View | |
83400 | CVE-2017-6511 | andrzuk/FineCMS before 2017-03-06 is vulnerable to a reflected XSS in index.php because of missing validation of the action parameter in application/classes/application.php. | 2 | 4.3 | Medium | 2017-03-18 | 2017-03-09 | View | |
86489 | CVE-2017-9252 | andrzuk/FineCMS through 2017-05-28 is vulnerable to a reflected XSS in the search page via the text-search parameter to index.php in a route=search action. | 2 | 4.3 | Medium | 2017-06-12 | 2017-06-08 | View |
Page 1247 of 17672, showing 5 records out of 88360 total, starting on record 6231, ending on 6235