NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86721 | CVE-2017-9547 | admin.php in BigTree through 4.2.18 has a Cross-site Scripting (XSS) vulnerability, which allows remote authenticated users to inject arbitrary web script or HTML by launching an Edit Page action and entering the Navigation Title or Page Title of a page that is scheduled for future publication (aka a pending page change). | 2 | 3.5 | Low | 2017-06-17 | 2017-06-15 | View | |
86722 | CVE-2017-9548 | admin.php in BigTree through 4.2.18 has a Cross-site Scripting (XSS) vulnerability, which allows remote authenticated users to inject arbitrary web script or HTML by launching a Home Template Edit Page action and entering the Navigation Title of a page that is scheduled for future publication (aka a pending page change). | 2 | 3.5 | Low | 2017-06-17 | 2017-06-15 | View | |
86723 | CVE-2012-6705 | Cross Site Scripting (XSS) exists in Jamroom before 4.2.7 via the Status Update field. | 2 | 4.3 | Medium | 2017-06-12 | 2017-06-09 | View | |
86724 | CVE-2014-3498 | The user module in ansible before 1.6.6 allows remote authenticated users to execute arbitrary commands. | 2 | 6.5 | Medium | 2017-06-18 | 2017-06-14 | View | |
86725 | CVE-2014-4843 | Curam Universal Access in IBM Curam Social Program Management (SPM) 6.0 SP2 before EP26, 6.0.4 before 6.0.4.6, and 6.0.5 before 6.0.5.5 iFix5 allows remote attackers to obtain sensitive information about internal caseworker usernames via vectors related to a URL. | 2 | 5 | Medium | 2017-06-18 | 2017-06-15 | View |
Page 17345 of 17672, showing 5 records out of 88360 total, starting on record 86721, ending on 86725