NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
87788 | CVE-2017-11127 | Bolt CMS 3.2.14 allows stored XSS by uploading an SVG document with a Content-Type: image/svg+xml header. | 2017-07-18 | 2017-07-17 | View | ||||
88044 | CVE-2017-6717 | A vulnerability in the web framework of Cisco Firepower Management Center could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web interface. More Information: CSCvc38801. Known Affected Releases: 6.0.1.3 6.2.1. Known Fixed Releases: 6.2.1. | 2 | 3.5 | Low | 2017-07-18 | 2017-07-07 | View | |
88300 | CVE-2016-0238 | IBM Security Guardium 9.0, 9.1, 9.5, 10.0, and 10.1 transmits sensitive data in cleartext in the query of the request. This could allow an attacker to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 110409 | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-11 | View | |
66029 | CVE-2005-0266 | Cross-site scripting (XSS) vulnerability in index.php in SugarCRM 1.X allows remote attackers to inject arbitrary web script or HTML via the (1) return_module, (2) return_action, (3) name, (4) module, or (5) record parameter. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
66541 | CVE-2005-0791 | Cross-site scripting (XSS) vulnerability in adframe.php in phpAdsNew 2.0.4-pr1, when register_globals is enabled, allows remote attackers to inject arbitrary web script or HTML via the refresh parameter. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 17299 of 17672, showing 5 records out of 88360 total, starting on record 86491, ending on 86495