NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
21995 | CVE-2016-7998 | The SPIP template composer/compiler in SPIP 3.1.2 and earlier allows remote authenticated users to execute arbitrary PHP code by uploading an HTML file with a crafted (1) INCLUDE or (2) INCLURE tag and then accessing it with a valider_xml action. | 2 | 6.5 | Medium | 2017-05-27 | 2017-05-23 | View | |
21996 | CVE-2016-7999 | ecrire/exec/valider_xml.php in SPIP 3.1.2 and earlier allows remote attackers to conduct server side request forgery (SSRF) attacks via a URL in the var_url parameter in a valider_xml action. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-23 | View | |
55280 | CVE-2007-3126 | Gimp before 2.8.22 allows context-dependent attackers to cause a denial of service (crash) via an ICO file with an InfoHeader containing a Height of zero, a similar issue to CVE-2007-2237. | 2 | 5 | Medium | 2017-05-27 | 2017-05-23 | View | |
84725 | CVE-2017-6088 | Multiple SQL injection vulnerabilities in EyesOfNetwork (aka EON) 5.0 and earlier allow remote authenticated users to execute arbitrary SQL commands via the (1) bp_name, (2) display, (3) search, or (4) equipment parameter to module/monitoring_ged/ged_functions.php or the (5) type parameter to monitoring_ged/ajax.php. | 2 | 9 | High | 2017-05-27 | 2017-05-23 | View | |
26621 | CVE-2015-5477 | named in ISC BIND 9.x before 9.9.7-P2 and 9.10.x before 9.10.2-P3 allows remote attackers to cause a denial of service (REQUIRE assertion failure and daemon exit) via TKEY queries. | 2 | 7.8 | High | 2017-05-27 | 2017-05-23 | View |
Page 16065 of 17672, showing 5 records out of 88360 total, starting on record 80321, ending on 80325