NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 21675 | CVE-2016-7146 | MoinMoin 1.9.8 allows remote attackers to conduct "JavaScript injection" attacks by using the "page creation or crafted URL" approach, related to a "Cross Site Scripting (XSS)" issue affecting the action=fckdialog&dialog=attachment (via page name) component. | 2 | 4.3 | Medium | 2017-02-06 | 2017-01-31 | View | |
| 87211 | CVE-2016-10365 | Kibana versions before 4.6.3 and 5.0.1 have an open redirect vulnerability that would enable an attacker to craft a link in the Kibana domain that redirects to an arbitrary website. | 2 | 5.8 | Medium | 2017-06-28 | 2017-06-28 | View | |
| 22699 | CVE-2015-0196 | CRLF injection vulnerability in IBM WebSphere Commerce 6.0 through 6.0.0.11 and 7.0 before 7.0.0.8 Cumulative iFix 2 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted URL. | 2 | 5 | Medium | 2017-01-19 | 2015-06-29 | View | |
| 88235 | CVE-2017-9873 | IrfanView version 4.44 (32bit) with FPX Plugin 4.46 allows attackers to execute arbitrary code or cause a denial of service via a crafted .fpx file, related to a Read Access Violation on Control Flow starting at FPX!GetPlugInInfo+0x0000000000012bf2. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-11 | View | |
| 22955 | CVE-2015-0479 | Unspecified vulnerability in the XDK and XDB - XML Database component in Oracle Database Server 11.2.0.3, 11.2.0.4, and 12.1.0.1 allows remote authenticated users to affect availability via unknown vectors. | 2 | 4 | Medium | 2017-01-19 | 2017-01-02 | View |
Page 14675 of 17672, showing 5 records out of 88360 total, starting on record 73371, ending on 73375