NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 26043 | CVE-2015-4714 | Cross-site scripting (XSS) vulnerability in the DreamBox DM500-S allows remote attackers to inject arbitrary web script or HTML via the mode parameter to /body. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-07 | View | |
| 26044 | CVE-2015-4716 | Directory traversal vulnerability in the routing component in ownCloud Server before 7.0.6 and 8.0.x before 8.0.4, when running on Windows, allows remote attackers to reinstall the application or execute arbitrary code via unspecified vectors. | 2 | 10 | High | 2017-01-19 | 2016-12-07 | View | |
| 26045 | CVE-2015-4717 | The filename sanitization component in ownCloud Server before 6.0.8, 7.0.x before 7.0.6, and 8.0.x before 8.0.4 does not properly handle $_GET parameters cast by PHP to an array, which allows remote attackers to cause a denial of service (infinite loop and log file consumption) via crafted endpoint file names. | 2 | 7.8 | High | 2017-01-19 | 2015-10-22 | View | |
| 26046 | CVE-2015-4718 | The external SMB storage driver in ownCloud Server before 6.0.8, 7.0.x before 7.0.6, and 8.0.x before 8.0.4 allows remote authenticated users to execute arbitrary SMB commands via a ; (semicolon) character in a file. | 2 | 9 | High | 2017-01-19 | 2015-10-22 | View | |
| 26047 | CVE-2015-4725 | Cross-site scripting (XSS) vulnerability in forgot.php in AudioShare 2.0.2 allows remote attackers to inject arbitrary web script or HTML via the email parameter. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-07 | View |
Page 14525 of 17672, showing 5 records out of 88360 total, starting on record 72621, ending on 72625