NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83552  CVE-2014-8708  Pluck CMS 4.7.2 allows remote attackers to execute arbitrary code via the blog form feature.          2017-03-18  2017-03-17  View
83553  CVE-2014-8722  GetSimple CMS 3.3.4 allows remote attackers to obtain sensitive information via a direct request to (1) data/users/<username>.xml, (2) backups/users/<username>.xml.bak, (3) data/other/authorization.xml, or (4) data/other/appid.xml.          2017-03-18  2017-03-17  View
83554  CVE-2014-8723  GetSimple CMS 3.3.4 allows remote attackers to obtain sensitive information via a direct request to (1) plugins/anonymous_data.php or (2) plugins/InnovationPlugin.php, which reveals the installation path in an error message.          2017-03-18  2017-03-17  View
83562  CVE-2015-3881  Information disclosure issue in qdPM 8.3 allows remote attackers to obtain sensitive information via a direct request to (1) core/config/databases.yml, (2) core/log/qdPM_prod.log, or (3) core/apps/qdPM/config/settings.yml.          2017-03-18  2017-03-17  View
83563  CVE-2015-3882  qdPM 8.3 allows remote attackers to obtain sensitive information via invalid ID value to index.php/users/info/id/[ID], which reveals the installation path in an error message.          2017-03-18  2017-03-17  View

Page 15707 of 17672, showing 5 records out of 88360 total, starting on record 78531, ending on 78535

Actions