NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
35291 | CVE-2014-8069 | Multiple cross-site scripting (XSS) vulnerabilities in YOOtheme Pagekit CMS 0.8.7 allow remote attackers to inject arbitrary web script or HTML via the (1) HTTP Referer header to index.php/user or (2) PATH_INFO to index.php. | 2 | 4.3 | Medium | 2017-01-19 | 2014-10-21 | View | |
35803 | CVE-2014-8953 | Multiple cross-site request forgery (CSRF) vulnerabilities in Php Scriptlerim Who"s Who script allow remote attackers to hijack the authentication of administrators or requests that (1) add an admin account via a request to filepath/yonetim/plugin/adminsave.php or have unspecified impact via a request to (2) ayarsave.php, (3) uyesave.php, (4) slaytadd.php, or (5) slaytsave.php. | 2 | 6.8 | Medium | 2017-01-19 | 2014-11-17 | View | |
36059 | CVE-2014-9344 | Cross-site request forgery (CSRF) vulnerability in Snowfox CMS before 1.0.10 allows remote attackers to hijack the authentication of administrators for requests that add a new admin account via a submit action in the admin/accounts/create uri to snowfox/. | 2 | 6.8 | Medium | 2017-01-19 | 2014-12-09 | View | |
36315 | CVE-2014-9716 | Cross-site scripting (XSS) vulnerability in WebODF before 0.5.4 allows remote attackers to inject arbitrary web script or HTML via a file name. | 2 | 4.3 | Medium | 2017-01-19 | 2016-06-23 | View | |
36571 | CVE-2013-0215 | oxenstored in Xen 4.1.x, Xen 4.2.x, and xen-unstable does not properly consider the state of the Xenstore ring during read operations, which allows guest OS users to cause a denial of service (daemon crash and host-control outage, or memory consumption) or obtain sensitive control-plane data by leveraging guest administrative access. | 2 | 4.3 | Medium | 2017-01-18 | 2013-10-10 | View |
Page 16384 of 17672, showing 5 records out of 88360 total, starting on record 81916, ending on 81920