NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
36036  CVE-2014-9311  Cross-site scripting (XSS) vulnerability in admin.php in the Shareaholic plugin before 7.6.1.0 for WordPress allows remote authenticated users to inject arbitrary web script or HTML via the location[id] parameter in a shareaholic_add_location action to wp-admin/admin-ajax.php.    3.5  Low  2017-01-19  2015-04-15  View
52164  CVE-2009-5060  Unspecified vulnerability in IBM Lotus Quickr 8.1 before 8.1.0.11 services for Lotus Domino might allow remote authenticated users to cause a denial of service (daemon crash) by accessing an entry in a calendar, aka SPR MZHA7SEBJX.    3.5  Low  2017-01-07  2011-03-24  View
10949  CVE-2011-4560  Cross-site scripting (XSS) vulnerability in the Petition Node module 6.x-1.x before 6.x-1.5 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors related to signing a petition.    3.5  Low  2017-01-07  2012-01-03  View
84677  CVE-2017-5160  An Inadequate Encryption Strength issue was discovered in Schneider Electric Wonderware InTouch Access Anywhere, version 11.5.2 and prior. The software will connect via Transport Layer Security without verifying the peer's SSL certificate properly.    3.5  Low  2017-04-27  2017-04-26  View
85701  CVE-2017-0255  Microsoft SharePoint Foundation 2013 SP1 allows an elevation of privilege vulnerability when it does not properly sanitize a specially crafted web request, aka Microsoft SharePoint XSS Vulnerability.    3.5  Low  2017-05-27  2017-05-23  View

Page 15077 of 17672, showing 5 records out of 88360 total, starting on record 75381, ending on 75385

Actions