NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
26043  CVE-2015-4714  Cross-site scripting (XSS) vulnerability in the DreamBox DM500-S allows remote attackers to inject arbitrary web script or HTML via the mode parameter to /body.    4.3  Medium  2017-01-19  2016-12-07  View
26044  CVE-2015-4716  Directory traversal vulnerability in the routing component in ownCloud Server before 7.0.6 and 8.0.x before 8.0.4, when running on Windows, allows remote attackers to reinstall the application or execute arbitrary code via unspecified vectors.    10  High  2017-01-19  2016-12-07  View
26045  CVE-2015-4717  The filename sanitization component in ownCloud Server before 6.0.8, 7.0.x before 7.0.6, and 8.0.x before 8.0.4 does not properly handle $_GET parameters cast by PHP to an array, which allows remote attackers to cause a denial of service (infinite loop and log file consumption) via crafted endpoint file names.    7.8  High  2017-01-19  2015-10-22  View
26046  CVE-2015-4718  The external SMB storage driver in ownCloud Server before 6.0.8, 7.0.x before 7.0.6, and 8.0.x before 8.0.4 allows remote authenticated users to execute arbitrary SMB commands via a ; (semicolon) character in a file.    High  2017-01-19  2015-10-22  View
26047  CVE-2015-4725  Cross-site scripting (XSS) vulnerability in forgot.php in AudioShare 2.0.2 allows remote attackers to inject arbitrary web script or HTML via the email parameter.    4.3  Medium  2017-01-19  2016-12-07  View

Page 14525 of 17672, showing 5 records out of 88360 total, starting on record 72621, ending on 72625

Actions