NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
17365 | CVE-2016-1000116 | Huge-IT Portfolio Gallery manager v1.1.0 SQL Injection and XSS | 2 | 6.5 | Medium | 2017-03-29 | 2017-03-27 | View | |
82901 | CVE-2016-5044 | The WRITE_UNALIGNED function in dwarf_elf_access.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds write and crash) via a crafted DWARF section. | 2 | 5 | Medium | 2017-02-28 | 2017-02-22 | View | |
17621 | CVE-2016-1172 | Cross-site request forgery (CSRF) vulnerability in the Recruit plugin before 0.9.3 for baserCMS allows remote attackers to hijack the authentication of administrators. | 2 | 6.8 | Medium | 2017-01-19 | 2016-04-07 | View | |
17877 | CVE-2016-1468 | The administrative web interface in Cisco TelePresence Video Communication Server Expressway X8.5.2 allows remote authenticated users to execute arbitrary commands via crafted fields, aka Bug ID CSCuv12531. | 2 | 6.5 | Medium | 2017-01-19 | 2016-11-28 | View | |
83413 | CVE-2017-6538 | A Cross-Site Scripting (XSS) issue was discovered in webpagetest 3.0. The vulnerability exists due to insufficient filtration of user-supplied data (video) passed to the webpagetest-master/www/speedindex/index.php URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website. | 2 | 4.3 | Medium | 2017-03-18 | 2017-03-17 | View |
Page 16157 of 17672, showing 5 records out of 88360 total, starting on record 80781, ending on 80785