NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
8423  CVE-2011-1491  The login form in Roundcube Webmail before 0.5.1 does not properly handle a correctly authenticated but unintended login attempt, which makes it easier for remote authenticated users to obtain sensitive information by arranging for a victim to login to the attacker"s account and then compose an e-mail message, related to a "login CSRF" issue.    3.5  Low  2017-01-07  2011-04-20  View
9447  CVE-2011-2711  Cross-site scripting (XSS) vulnerability in the print_fileinfo function in ui-diff.c in cgit 0.9.0.2 and earlier allows remote authenticated users to inject arbitrary web script or HTML via the filename associated with the rename hint.    3.5  Low  2017-01-07  2011-09-06  View
83175  CVE-2017-3874  A vulnerability in the web framework of Cisco Unified Communications Manager (CallManager) could allow an authenticated, remote attacker to perform a cross-site scripting (XSS) attack. More Information: CSCvb70033. Known Affected Releases: 11.5(1.11007.2). Known Fixed Releases: 12.0(0.98000.507) 11.0(1.23900.5) 11.0(1.23900.3) 10.5(2.15900.2).    3.5  Low  2017-07-18  2017-07-11  View
85223  CVE-2016-9979  IBM Curam Social Program Management 5.2, 6.0, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 120255.    3.5  Low  2017-04-27  2017-04-26  View
86503  CVE-2017-9298  Cross-site scripting vulnerability in Hitachi Device Manager before 8.5.2-01 and Hitachi Replication Manager before 8.5.2-00 allows authenticated remote users to execute arbitrary JavaScript code.    3.5  Low  2017-06-12  2017-06-08  View

Page 15110 of 17672, showing 5 records out of 88360 total, starting on record 75546, ending on 75550

Actions