NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 82265 | CVE-2017-5963 | An issue was discovered in caddy (for TYPO3) before 7.2.10. The vulnerability exists due to insufficient filtration of user-supplied data in the paymillToken HTTP POST parameter passed to the caddy/Resources/Public/JavaScript/e-payment/paymill/api/php/payment.php URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website. | 2 | 4.3 | Medium | 2017-03-18 | 2017-03-03 | View | |
| 83289 | CVE-2017-6180 | Keekoon KK002 devices 1.8.12 HD have a Cross Site Request Forgery Vulnerability affecting goform/formChnUserPwd and goform/formUserMng (and the entire set of other pages). | 2 | 6.8 | Medium | 2017-03-18 | 2017-03-14 | View | |
| 83545 | CVE-2014-8701 | Wonder CMS 2014 allows remote attackers to obtain sensitive information by viewing /files/password, which reveals the unsalted MD5 hashed password. | 2017-03-18 | 2017-03-17 | View | ||||
| 82266 | CVE-2017-5964 | An issue was discovered in Emoncms through 9.8.0. The vulnerability exists due to insufficient filtration of user-supplied data in multiple HTTP GET parameters passed to the emoncms-master/Modules/vis/visualisations/compare.php URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website. | 2 | 4.3 | Medium | 2017-03-18 | 2017-03-01 | View | |
| 83546 | CVE-2014-8702 | Wonder CMS 2014 allows remote attackers to obtain sensitive information by logging into the application with an array for the password, which reveals the installation path in an error message. | 2017-03-18 | 2017-03-17 | View |
Page 15644 of 17672, showing 5 records out of 88360 total, starting on record 78216, ending on 78220