NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
84082  CVE-2016-10203  Cross-site scripting (XSS) vulnerability in Zoneminder 1.30 and earlier allows remote attackers to inject arbitrary web script or HTML via the name when creating a new monitor.    4.3  Medium  2017-03-29  2017-03-28  View
83827  CVE-2017-7214  An issue was discovered in exception_wrapper.py in OpenStack Nova 13.x through 13.1.3, 14.x through 14.0.4, and 15.x through 15.0.1. Legacy notification exception contexts appearing in ERROR level logs may include sensitive information such as account passwords and authorization tokens.    Medium  2017-03-29  2017-03-24  View
84083  CVE-2016-10205  Session fixation vulnerability in Zoneminder 1.30 and earlier allows remote attackers to hijack web sessions via the ZMSESSID cookie.    7.5  High  2017-03-29  2017-03-28  View
84084  CVE-2016-10206  Cross-site request forgery (CSRF) vulnerability in Zoneminder 1.30 and earlier allows remote attackers to hijack the authentication of users for requests that change passwords and possibly have unspecified other impact as demonstrated by a crafted user action request to index.php.    6.8  Medium  2017-03-29  2017-03-28  View
83829  CVE-2017-7222  A cross-site scripting (XSS) vulnerability in MantisBT before 2.1.1 allows remote attackers to inject arbitrary HTML or JavaScript (if MantisBT's CSP settings permit it) by modifying 'window_title' in the application configuration. This requires privileged access to MantisBT configuration management pages (i.e., administrator access rights) or altering the system configuration file (config_inc.php).    4.3  Medium  2017-03-29  2017-03-23  View

Page 15755 of 17672, showing 5 records out of 88360 total, starting on record 78771, ending on 78775

Actions