NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
85806  CVE-2017-1282  IBM Content Navigator & CMIS 2.0 and 3.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 124760.    3.5  Low  2017-06-03  2017-06-01  View
86065  CVE-2017-8338  A vulnerability in MikroTik Version 6.38.5 could allow an unauthenticated remote attacker to exhaust all available CPU via a flood of UDP packets on port 500 (used for L2TP over IPsec), preventing the affected router from accepting new connections; all devices will be disconnected from the router and all logs removed automatically.    7.8  High  2017-06-03  2017-06-01  View
85820  CVE-2017-2169  Cross-site scripting vulnerability in MaxButtons prior to version 6.19 and MaxButtons Pro prior to version 6.19 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2017-06-03  2017-06-01  View
86342  CVE-2015-5468  Directory traversal vulnerability in the WP e-Commerce Shop Styling plugin before 2.6 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter to includes/download.php.    Medium  2017-06-04  2017-06-01  View
86362  CVE-2016-4900  Untrusted search path vulnerability in Evernote for Windows versions prior to 6.3 allows remote attackers to gain privileges via a Trojan horse DLL in an unspecified directory.    6.8  Medium  2017-06-04  2017-06-01  View

Page 1545 of 17672, showing 5 records out of 88360 total, starting on record 7721, ending on 7725

Actions