NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83552 | CVE-2014-8708 | Pluck CMS 4.7.2 allows remote attackers to execute arbitrary code via the blog form feature. | 2017-03-18 | 2017-03-17 | View | ||||
83553 | CVE-2014-8722 | GetSimple CMS 3.3.4 allows remote attackers to obtain sensitive information via a direct request to (1) data/users/<username>.xml, (2) backups/users/<username>.xml.bak, (3) data/other/authorization.xml, or (4) data/other/appid.xml. | 2017-03-18 | 2017-03-17 | View | ||||
83554 | CVE-2014-8723 | GetSimple CMS 3.3.4 allows remote attackers to obtain sensitive information via a direct request to (1) plugins/anonymous_data.php or (2) plugins/InnovationPlugin.php, which reveals the installation path in an error message. | 2017-03-18 | 2017-03-17 | View | ||||
83562 | CVE-2015-3881 | Information disclosure issue in qdPM 8.3 allows remote attackers to obtain sensitive information via a direct request to (1) core/config/databases.yml, (2) core/log/qdPM_prod.log, or (3) core/apps/qdPM/config/settings.yml. | 2017-03-18 | 2017-03-17 | View | ||||
83563 | CVE-2015-3882 | qdPM 8.3 allows remote attackers to obtain sensitive information via invalid ID value to index.php/users/info/id/[ID], which reveals the installation path in an error message. | 2017-03-18 | 2017-03-17 | View |
Page 15707 of 17672, showing 5 records out of 88360 total, starting on record 78531, ending on 78535