NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
25797  CVE-2015-4335  Redis before 2.8.1 and 3.x before 3.0.2 allows remote attackers to execute arbitrary Lua bytecode via the eval command.    10  High  2017-01-19  2016-12-30  View
25798  CVE-2015-4336  cloner.functions.php in the XCloner plugin 3.1.2 for WordPress allows remote authenticated users to execute arbitrary commands via a file containing filenames with shell metacharacters, as demonstrated by using the backup comments feature to create the file.    6.5  Medium  2017-01-19  2015-06-18  View
25799  CVE-2015-4337  Cross-site scripting (XSS) vulnerability in the XCloner plugin 3.1.2 for WordPress allows remote authenticated users to inject arbitrary web script or HTML via the excl_manual parameter in the xcloner_show page to wpadmin/plugins.php.    3.5  Low  2017-01-19  2015-06-18  View
25800  CVE-2015-4338  Static code injection vulnerability in the XCloner plugin 3.1.2 for WordPress allows remote authenticated users to inject arbitrary PHP code into the language files via a Translation LM_FRONT_* field for a language, as demonstrated by language/italian.php.    6.5  Medium  2017-01-19  2015-06-18  View
25801  CVE-2015-4342  SQL injection vulnerability in Cacti before 0.8.8d allows remote attackers to execute arbitrary SQL commands via unspecified vectors involving a cdef id.    7.5  High  2017-01-19  2016-12-02  View

Page 14474 of 17672, showing 5 records out of 88360 total, starting on record 72366, ending on 72370

Actions