NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 22240 | CVE-2016-8903 | SQL injection vulnerability in the "Site Browser > Templates pages" screen in dotCMS before 3.3.1 allows remote authenticated attackers to execute arbitrary SQL commands via the orderby parameter. | 2 | 6.5 | Medium | 2017-01-19 | 2016-11-29 | View | |
| 22496 | CVE-2016-9866 | An issue was discovered in phpMyAdmin. When the arg_separator is different from its default & value, the CSRF token was not properly stripped from the return URL of the preference import action. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-23 | View | |
| 88032 | CVE-2017-6704 | A vulnerability in the web application in the Cisco Prime Collaboration Provisioning tool could allow an authenticated, remote attacker to perform arbitrary file downloads that could allow the attacker to read files from the underlying filesystem. More Information: CSCvc90335. Known Affected Releases: 12.1. | 2 | 4 | Medium | 2017-07-18 | 2017-07-07 | View | |
| 22752 | CVE-2015-0266 | The Policy Admin Tool in Apache Ranger before 0.5.0 allows remote authenticated users to bypass intended access restrictions via direct access to module URLs. | 2 | 6.5 | Medium | 2017-01-19 | 2016-04-13 | View | |
| 88288 | CVE-2017-9926 | In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted file, related to a Read Access Violation starting at image00000000_00400000+0x000000000001b596. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 15180 of 17672, showing 5 records out of 88360 total, starting on record 75896, ending on 75900