NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
85044 | CVE-2017-8099 | There is CSRF in the WHIZZ plugin before 1.1.1 for WordPress, allowing attackers to delete any WordPress users and change the plugin's status via a GET request. | 2 | 5.8 | Medium | 2017-05-07 | 2017-04-28 | View | |
85556 | CVE-2017-8378 | Heap-based buffer overflow in the PdfParser::ReadObjects function in base/PdfParser.cpp in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via vectors related to m_offsets.size. | 2 | 7.5 | High | 2017-05-27 | 2017-05-10 | View | |
85812 | CVE-2017-2122 | Cross-site scripting vulnerability in Nessus versions 6.8.0, 6.8.1, 6.9.0, 6.9.1 and 6.9.2 allows remote authenticated attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 3.5 | Low | 2017-05-27 | 2017-05-19 | View | |
86068 | CVE-2017-8382 | admidio 3.2.8 has CSRF in adm_program/modules/members/members_function.php with an impact of deleting arbitrary user accounts. | 2 | 3.5 | Low | 2017-06-12 | 2017-06-04 | View | |
86324 | CVE-2014-9970 | jasypt before 1.9.2 allows a timing attack against the password hash comparison. | 2 | 5 | Medium | 2017-06-04 | 2017-05-31 | View |
Page 15906 of 17672, showing 5 records out of 88360 total, starting on record 79526, ending on 79530