NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
35291  CVE-2014-8069  Multiple cross-site scripting (XSS) vulnerabilities in YOOtheme Pagekit CMS 0.8.7 allow remote attackers to inject arbitrary web script or HTML via the (1) HTTP Referer header to index.php/user or (2) PATH_INFO to index.php.    4.3  Medium  2017-01-19  2014-10-21  View
35803  CVE-2014-8953  Multiple cross-site request forgery (CSRF) vulnerabilities in Php Scriptlerim Who"s Who script allow remote attackers to hijack the authentication of administrators or requests that (1) add an admin account via a request to filepath/yonetim/plugin/adminsave.php or have unspecified impact via a request to (2) ayarsave.php, (3) uyesave.php, (4) slaytadd.php, or (5) slaytsave.php.    6.8  Medium  2017-01-19  2014-11-17  View
36059  CVE-2014-9344  Cross-site request forgery (CSRF) vulnerability in Snowfox CMS before 1.0.10 allows remote attackers to hijack the authentication of administrators for requests that add a new admin account via a submit action in the admin/accounts/create uri to snowfox/.    6.8  Medium  2017-01-19  2014-12-09  View
36315  CVE-2014-9716  Cross-site scripting (XSS) vulnerability in WebODF before 0.5.4 allows remote attackers to inject arbitrary web script or HTML via a file name.    4.3  Medium  2017-01-19  2016-06-23  View
36571  CVE-2013-0215  oxenstored in Xen 4.1.x, Xen 4.2.x, and xen-unstable does not properly consider the state of the Xenstore ring during read operations, which allows guest OS users to cause a denial of service (daemon crash and host-control outage, or memory consumption) or obtain sensitive control-plane data by leveraging guest administrative access.    4.3  Medium  2017-01-18  2013-10-10  View

Page 16384 of 17672, showing 5 records out of 88360 total, starting on record 81916, ending on 81920

Actions