NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
41177  CVE-2013-5963  Unrestricted file upload vulnerability in multi.php in Simple Dropbox Upload plugin before 1.8.8.1 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in wp-content/uploads/wpdb/.    6.8  Medium  2017-01-18  2013-10-11  View
41689  CVE-2013-6808  Cross-site scripting (XSS) vulnerability in lib/NSSDropoff.php in ZendTo before 4.11-13 allows remote attackers to inject arbitrary web script or HTML via a modified emailAddr field to pickup.php.    4.3  Medium  2017-01-18  2013-12-30  View
42201  CVE-2012-0056  The mem_write function in the Linux kernel before 3.2.2, when ASLR is disabled, does not properly check permissions when writing to /proc/<pid>/mem, which allows local users to gain privileges by modifying process memory, as demonstrated by Mempodipper.    6.9  Medium  2017-01-19  2014-07-17  View
42457  CVE-2012-0326  The twicca application 0.7.0 through 0.9.30 for Android does not properly restrict the use of network privileges, which allows remote attackers to read media files on an SD card via a crafted application.    Medium  2017-01-19  2012-11-19  View
43481  CVE-2012-1604  Cross-site scripting (XSS) vulnerability in NextBBS 0.6 allows remote attackers to inject arbitrary web script or HTML via the do parameter to index.php.    4.3  Medium  2017-01-19  2012-10-02  View

Page 16317 of 17672, showing 5 records out of 88360 total, starting on record 81581, ending on 81585

Actions