NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
26029  CVE-2015-4671  Cross-site scripting (XSS) vulnerability in OpenCart before 2.1.0.2 allows remote attackers to inject arbitrary web script or HTML via the zone_id parameter to index.php.    4.3  Medium  2017-01-19  2016-12-07  View
26030  CVE-2015-4674  The autoupdate implementation in TimeDoctor Pro 1.4.72.3 on Windows relies on unsigned installer files that are retrieved without use of SSL, which makes it easier for man-in-the-middle attackers to execute arbitrary code via a crafted file.    9.3  High  2017-01-19  2016-12-07  View
26031  CVE-2015-4675  Buffer overflow in the Tiny SRP library (aka TinySRP) allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted size value for the username field.    7.5  High  2017-01-19  2016-12-07  View
26032  CVE-2015-4676  SQL injection vulnerability in ticket.php in TickFa 1.x allows remote authenticated users to execute arbitrary SQL commands via the tid parameter in a read action.    6.5  Medium  2017-01-19  2016-12-07  View
26033  CVE-2015-4677  Cross-site request forgery (CSRF) vulnerability in FiverrScript (aka Fiverr Script) 7.2 allows remote attackers to hijack the authentication of administrators for requests that create a new admin via a request to administrator/admins_create.php.    6.8  Medium  2017-01-19  2016-12-07  View

Page 14522 of 17672, showing 5 records out of 88360 total, starting on record 72606, ending on 72610

Actions