NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 85558 | CVE-2017-8384 | Craft CMS before 2.6.2976 allows XSS attacks because an array returned by HttpRequestService::getSegments() and getActionSegments() need not be zero-based. NOTE: this vulnerability exists because of an incomplete fix for CVE-2017-8052. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-11 | View | |
| 85017 | CVE-2017-8052 | Craft CMS before 2.6.2974 allows XSS attacks. | 2 | 4.3 | Medium | 2017-04-27 | 2017-04-26 | View | |
| 51480 | CVE-2009-4357 | CQWeb (aka the web interface) in IBM Rational ClearQuest before 7.1.1 does not properly handle use of legacy URLs for automatic login, which might allow attackers to discover the passwords for user accounts via unspecified vectors. | 2 | 5 | Medium | 2017-01-07 | 2009-12-21 | View | |
| 57440 | CVE-2007-5374 | cp_memberedit.php in LightBlog 8.4.1.1 does not check for administrative credentials when processing an admin action, which allows remote authenticated users to increase the privileges of any account. | 2 | 6.5 | Medium | 2017-01-07 | 2008-09-05 | View | |
| 70598 | CVE-2004-0134 | cpr (libcpr) in SGI IRIX before 6.5.25 allows local users to gain privileges by loading a user provided library while restarting the checkpointed process. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View |
Page 14983 of 17672, showing 5 records out of 88360 total, starting on record 74911, ending on 74915