NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
25600  CVE-2015-4066  Multiple SQL injection vulnerabilities in admin/handlers.php in the GigPress plugin before 2.3.9 for WordPress allow remote authenticated users to execute arbitrary SQL commands via the (1) show_artist_id or (2) show_venue_id parameter in an add action in the gigpress.php page to wp-admin/admin.php.    6.5  Medium  2017-01-19  2015-06-02  View
25601  CVE-2015-4067  Integer overflow in the libnv6 module in Dell NetVault Backup before 10.0.5 allows remote attackers to execute arbitrary code via crafted template string specifiers in a serialized object, which triggers a heap-based buffer overflow.    10  High  2017-01-19  2016-12-05  View
25602  CVE-2015-4068  Directory traversal vulnerability in Arcserve UDP before 5.0 Update 4 allows remote attackers to obtain sensitive information or cause a denial of service via a crafted file path to the (1) reportFileServlet or (2) exportServlet servlet.    9.4  High  2017-01-19  2016-12-05  View
25603  CVE-2015-4069  The EdgeServiceImpl web service in Arcserve UDP before 5.0 Update 4 allows remote attackers to obtain sensitive credentials via a crafted SOAP request to the (1) getBackupPolicy or (2) getBackupPolicies method.    7.8  High  2017-01-19  2016-12-05  View
86392  CVE-2015-4070  Open redirect vulnerability in the proxyimages function in wowproxy.php in the Wow Moodboard Lite plugin 1.1.1.1 for WordPress allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the url parameter.    5.8  Medium  2017-05-27  2017-05-24  View

Page 14434 of 17672, showing 5 records out of 88360 total, starting on record 72166, ending on 72170

Actions