NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 25797 | CVE-2015-4335 | Redis before 2.8.1 and 3.x before 3.0.2 allows remote attackers to execute arbitrary Lua bytecode via the eval command. | 2 | 10 | High | 2017-01-19 | 2016-12-30 | View | |
| 25798 | CVE-2015-4336 | cloner.functions.php in the XCloner plugin 3.1.2 for WordPress allows remote authenticated users to execute arbitrary commands via a file containing filenames with shell metacharacters, as demonstrated by using the backup comments feature to create the file. | 2 | 6.5 | Medium | 2017-01-19 | 2015-06-18 | View | |
| 25799 | CVE-2015-4337 | Cross-site scripting (XSS) vulnerability in the XCloner plugin 3.1.2 for WordPress allows remote authenticated users to inject arbitrary web script or HTML via the excl_manual parameter in the xcloner_show page to wpadmin/plugins.php. | 2 | 3.5 | Low | 2017-01-19 | 2015-06-18 | View | |
| 25800 | CVE-2015-4338 | Static code injection vulnerability in the XCloner plugin 3.1.2 for WordPress allows remote authenticated users to inject arbitrary PHP code into the language files via a Translation LM_FRONT_* field for a language, as demonstrated by language/italian.php. | 2 | 6.5 | Medium | 2017-01-19 | 2015-06-18 | View | |
| 25801 | CVE-2015-4342 | SQL injection vulnerability in Cacti before 0.8.8d allows remote attackers to execute arbitrary SQL commands via unspecified vectors involving a cdef id. | 2 | 7.5 | High | 2017-01-19 | 2016-12-02 | View |
Page 14474 of 17672, showing 5 records out of 88360 total, starting on record 72366, ending on 72370