NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
85044  CVE-2017-8099  There is CSRF in the WHIZZ plugin before 1.1.1 for WordPress, allowing attackers to delete any WordPress users and change the plugin's status via a GET request.    5.8  Medium  2017-05-07  2017-04-28  View
85045  CVE-2017-8100  There is CSRF in the CopySafe Web Protection plugin before 2.6 for WordPress, allowing attackers to change plugin settings.    4.3  Medium  2017-05-07  2017-05-02  View
85046  CVE-2017-8101  There is CSRF in Serendipity 2.0.5, allowing attackers to install any themes via a GET request.    6.8  Medium  2017-05-07  2017-04-27  View
84535  CVE-2017-3523  Vulnerability in the MySQL Connectors component of Oracle MySQL (subcomponent: Connector/J). Supported versions that are affected are 5.1.40 and earlier. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Connectors. While the vulnerability is in MySQL Connectors, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of MySQL Connectors. CVSS 3.0 Base Score 8.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H).    Medium  2017-05-07  2017-05-04  View
85047  CVE-2017-8102  Stored XSS in Serendipity v2.1-rc1 allows an attacker to steal an admin's cookie and other information by composing a new entry as an editor user. This is related to lack of the serendipity_event_xsstrust plugin and a set_config error in that plugin.    3.5  Low  2017-05-07  2017-04-28  View

Page 1721 of 17672, showing 5 records out of 88360 total, starting on record 8601, ending on 8605

Actions