NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 16052 | CVE-2010-4814 | SQL injection vulnerability in index1.php in Best Soft Inc. (BSI) Advance Hotel Booking System 1.0 allows remote attackers to execute arbitrary SQL commands via the page parameter. | 2 | 7.5 | High | 2017-01-18 | 2011-07-11 | View | |
| 84916 | CVE-2017-7628 | The Smart related articles extension 1.1 for Joomla! has SQL injection in dialog.php (attacker must use search_cats variable in POST method to exploit this vulnerability). | 2 | 7.5 | High | 2017-04-27 | 2017-04-20 | View | |
| 87988 | CVE-2017-4052 | Authentication Bypass vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote unauthenticated users / remote attackers to change or update any configuration settings, or gain administrator functionality via a crafted HTTP request parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-17 | View | |
| 27572 | CVE-2015-6728 | The ApiBase::getWatchlistUser function in MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x before 1.25.2 does not perform token comparison in constant time, which allows remote attackers to guess the watchlist token and bypass CSRF protection via a timing attack. | 2 | 7.5 | High | 2017-01-19 | 2016-12-07 | View | |
| 28852 | CVE-2015-8803 | The ecc_256_modp function in ecc-256.c in Nettle before 3.2 does not properly handle carry propagation and produces incorrect output in its implementation of the P-256 NIST elliptic curve, which allows attackers to have unspecified impact via unknown vectors, a different vulnerability than CVE-2015-8805. | 2 | 7.5 | High | 2017-01-19 | 2016-12-05 | View |
Page 14836 of 17672, showing 5 records out of 88360 total, starting on record 74176, ending on 74180