NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86504 | CVE-2017-9299 | Open Ticket Request System (OTRS) 3.3.9 has XSS in index.pl?Action=AgentStats requests, as demonstrated by OrderBy=[XSS] and Direction=[XSS] attacks. | 2 | 4.3 | Medium | 2017-06-12 | 2017-06-07 | View | |
86531 | CVE-2017-9360 | WebsiteBaker v2.10.0 has a SQL injection vulnerability in /account/details.php. | 2 | 7.5 | High | 2017-06-12 | 2017-06-06 | View | |
86532 | CVE-2017-9361 | WebsiteBaker v2.10.0 has a stored XSS vulnerability in /account/details.php. | 2 | 4.3 | Medium | 2017-06-12 | 2017-06-06 | View | |
86534 | CVE-2017-9364 | Unrestricted File Upload exists in BigTree CMS through 4.2.18: if an attacker uploads an 'xxx.pht' or 'xxx.phtml' file, they could bypass a safety check and execute any code. | 2 | 7.5 | High | 2017-06-12 | 2017-06-06 | View | |
86535 | CVE-2017-9365 | CSRF exists in BigTree CMS through 4.2.18 with the force parameter to /admin/pages/revisions.php - for example: /admin/pages/revisions/1/?force=false. A page with id=1 can be unlocked. | 2 | 6.8 | Medium | 2017-06-12 | 2017-06-06 | View |
Page 1531 of 17672, showing 5 records out of 88360 total, starting on record 7651, ending on 7655