NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
21898  CVE-2016-7790  Exponent CMS 2.3.9 suffers from a remote code execution vulnerability in /install/index.php. An attacker can upload "php" file to the website through uploader_paste.php, then overwrite /framework/conf/config.php, which leads to arbitrary code execution.    7.5  High  2017-01-19  2017-01-13  View
25994  CVE-2015-4607  Unrestricted file upload vulnerability in the Frontend User Upload (feupload) extension 0.5.0 and earlier for TYPO3 allows remote attackers to execute arbitrary code by uploading a file with an executable extension using a frontend form, then accessing it via a direct request to the file in the fileadmin folder.    7.5  High  2017-01-19  2016-12-07  View
28554  CVE-2015-8386  PCRE before 8.38 mishandles the interaction of lookbehind assertions and mutually recursive subpatterns, which allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via a crafted regular expression, as demonstrated by a JavaScript RegExp object encountered by Konqueror.    7.5  High  2017-01-19  2016-12-29  View
31882  CVE-2014-3775  libgadu before 1.11.4 and 1.12.0 before 1.12.0-rc3, as used in Pidgin and other products, allows remote Gadu-Gadu file relay servers to cause a denial of service (memory overwrite) or possibly execute arbitrary code via a crafted message.    7.5  High  2017-01-19  2016-12-21  View
42122  CVE-2013-7409  Buffer overflow in ALLPlayer 5.6.2 through 5.8.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a .m3u (playlist) file.    7.5  High  2017-01-18  2016-12-30  View

Page 14371 of 17672, showing 5 records out of 88360 total, starting on record 71851, ending on 71855

Actions