NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
46213  CVE-2012-4954  The edit-profile page in Vanilla Forums before 2.1a32 allows remote authenticated users to modify arbitrary profile settings by replacing the UserID value during a man-in-the-middle attack, related to a "parameter manipulation" issue.    3.5  Low  2017-01-19  2013-02-25  View
61317  CVE-2006-2632  Cross-site scripting (XSS) vulnerability in Andrew Godwin ByteHoard 2.1 and earlier allows remote authenticated users to inject arbitrary web script or HTML via file descriptions.    3.5  Low  2016-12-20  2011-03-07  View
10886  CVE-2011-4459  Best Practical Solutions RT 3.x before 3.8.12 and 4.x before 4.0.6 does not properly disable groups, which allows remote authenticated users to bypass intended access restrictions in opportunistic circumstances by leveraging a group membership.    3.5  Low  2017-01-07  2012-09-28  View
16774  CVE-2016-0322  Cross-site scripting (XSS) vulnerability in IBM Connections 4.0 through CR4, 4.5 through CR5, 5.0 through CR4, and 5.5 before CR1 allows remote authenticated users to inject arbitrary web script or HTML by uploading an HTML document.    3.5  Low  2017-01-19  2016-06-30  View
86918  CVE-2017-1214  IBM iNotes 8.5 and 9.0 could allow a remote attacker to send a malformed email to a victim, that when opened could cause an information disclosure. IBM X-Force ID: 123854.    3.5  Low  2017-07-18  2017-07-07  View

Page 14996 of 17672, showing 5 records out of 88360 total, starting on record 74976, ending on 74980

Actions