NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
25224  CVE-2015-3369  Cross-site scripting (XSS) vulnerability in the Taxonews module before 6.x-1.2 and 7.x-1.x before 7.x-1.1 for Drupal allows remote authenticated users with the "administer taxonomy" permission to inject arbitrary web script or HTML via a term name in a block.    3.5  Low  2017-01-19  2016-12-05  View
28040  CVE-2015-7445  IBM Multi-Enterprise Integration Gateway 1.0 through 1.0.0.1 and B2B Advanced Communications 1.x before 1.0.0.4, when guest access is configured, allow remote authenticated users to obtain sensitive information by reading error messages in responses.    3.5  Low  2017-01-19  2016-11-28  View
29064  CVE-2014-0134  The instance rescue mode in OpenStack Compute (Nova) 2013.2 before 2013.2.3 and Icehouse before 2014.1, when using libvirt to spawn images and use_cow_images is set to false, allows remote authenticated users to read certain compute host files by overwriting an instance disk with a crafted image.    3.5  Low  2017-01-19  2014-06-21  View
83849  CVE-2017-7255  XSS exists in the CMS Made Simple (CMSMS) 2.1.6 Content-->News-->Add Article feature via the m1_title parameter. Someone must login to conduct the attack.    3.5  Low  2017-04-27  2017-04-04  View
86921  CVE-2017-1278  IBM DOORS Next Generation (DNG/RRC) 4.0, 5.0 and 6.0 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site. IBM X-Force ID: 124756.    3.5  Low  2017-06-17  2017-06-16  View

Page 14999 of 17672, showing 5 records out of 88360 total, starting on record 74991, ending on 74995

Actions