NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
28188  CVE-2015-7707  Ignite Realtime Openfire 3.10.2 allows remote authenticated users to gain administrator access via the isadmin parameter to user-edit-form.jsp.    6.5  Medium  2017-01-19  2015-10-06  View
28189  CVE-2015-7708  Cross-site scripting (XSS) vulnerability in 4images 1.7.11 and earlier allows remote attackers to inject arbitrary web script or HTML via the cat_description parameter in an updatecat action to admin/categories.php.    4.3  Medium  2017-01-19  2015-10-06  View
28190  CVE-2015-7709  The arkeiad daemon in the Arkeia Backup Agent in Western Digital Arkeia 11.0.12 and earlier allows remote attackers to bypass authentication and execute arbitrary commands via a series of crafted requests involving the ARKFS_EXEC_CMD operation.    10  High  2017-01-19  2015-10-06  View
28191  CVE-2015-7712  Multiple eval injection vulnerabilities in mods/_standard/gradebook/edit_marks.php in ATutor 2.2 and earlier allow remote authenticated users with the AT_PRIV_GRADEBOOK privilege to execute arbitrary PHP code via the (1) asc or (2) desc parameter.    6.5  Medium  2017-01-19  2015-11-17  View
28192  CVE-2015-7713  OpenStack Compute (Nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) do not properly apply security group changes, which allows remote attackers to bypass intended restriction by leveraging an instance that was running when the change was made.    Medium  2017-01-19  2016-12-07  View

Page 14965 of 17672, showing 5 records out of 88360 total, starting on record 74821, ending on 74825

Actions