NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 28188 | CVE-2015-7707 | Ignite Realtime Openfire 3.10.2 allows remote authenticated users to gain administrator access via the isadmin parameter to user-edit-form.jsp. | 2 | 6.5 | Medium | 2017-01-19 | 2015-10-06 | View | |
| 28189 | CVE-2015-7708 | Cross-site scripting (XSS) vulnerability in 4images 1.7.11 and earlier allows remote attackers to inject arbitrary web script or HTML via the cat_description parameter in an updatecat action to admin/categories.php. | 2 | 4.3 | Medium | 2017-01-19 | 2015-10-06 | View | |
| 28190 | CVE-2015-7709 | The arkeiad daemon in the Arkeia Backup Agent in Western Digital Arkeia 11.0.12 and earlier allows remote attackers to bypass authentication and execute arbitrary commands via a series of crafted requests involving the ARKFS_EXEC_CMD operation. | 2 | 10 | High | 2017-01-19 | 2015-10-06 | View | |
| 28191 | CVE-2015-7712 | Multiple eval injection vulnerabilities in mods/_standard/gradebook/edit_marks.php in ATutor 2.2 and earlier allow remote authenticated users with the AT_PRIV_GRADEBOOK privilege to execute arbitrary PHP code via the (1) asc or (2) desc parameter. | 2 | 6.5 | Medium | 2017-01-19 | 2015-11-17 | View | |
| 28192 | CVE-2015-7713 | OpenStack Compute (Nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) do not properly apply security group changes, which allows remote attackers to bypass intended restriction by leveraging an instance that was running when the change was made. | 2 | 5 | Medium | 2017-01-19 | 2016-12-07 | View |
Page 14965 of 17672, showing 5 records out of 88360 total, starting on record 74821, ending on 74825