NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85281 | CVE-2016-1178 | The session management of the comment functionality in appleple a-blog cms 2.6.0.1 and earlier allows remote attackers to obtain or modify sensitive data via unspecified vectors. | 2 | 6.4 | Medium | 2017-04-27 | 2017-04-20 | View | |
85282 | CVE-2016-1179 | Cross-site scripting (XSS) vulnerability in the standard template of the comment functionality in appleple a-blog cms 2.6.0.1 and earlier allows remote attackers to inject arbitrary web script or HTML. | 2 | 4.3 | Medium | 2017-04-27 | 2017-04-20 | View | |
85292 | CVE-2016-2803 | Cross-site scripting (XSS) vulnerability in the dependency graphs in Bugzilla 2.16rc1 through 4.4.11, and 4.5.1 through 5.0.2 allows remote attackers to inject arbitrary web script or HTML. | 2 | 4.3 | Medium | 2017-04-27 | 2017-04-20 | View | |
84783 | CVE-2017-7279 | An unprivileged user of the Unitrends Enterprise Backup before 9.0.0 web server can escalate to root privileges by modifying the token cookie issued at login. | 2 | 10 | High | 2017-04-27 | 2017-04-20 | View | |
84784 | CVE-2017-7280 | An issue was discovered in api/includes/systems.php in Unitrends Enterprise Backup before 9.0.0. User input is not properly filtered before being sent to a popen function. This allows for remote code execution by sending a specially crafted user variable. | 2 | 7.5 | High | 2017-04-27 | 2017-04-20 | View |
Page 15861 of 17672, showing 5 records out of 88360 total, starting on record 79301, ending on 79305