NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
86721  CVE-2017-9547  admin.php in BigTree through 4.2.18 has a Cross-site Scripting (XSS) vulnerability, which allows remote authenticated users to inject arbitrary web script or HTML by launching an Edit Page action and entering the Navigation Title or Page Title of a page that is scheduled for future publication (aka a pending page change).    3.5  Low  2017-06-17  2017-06-15  View
86722  CVE-2017-9548  admin.php in BigTree through 4.2.18 has a Cross-site Scripting (XSS) vulnerability, which allows remote authenticated users to inject arbitrary web script or HTML by launching a Home Template Edit Page action and entering the Navigation Title of a page that is scheduled for future publication (aka a pending page change).    3.5  Low  2017-06-17  2017-06-15  View
86723  CVE-2012-6705  Cross Site Scripting (XSS) exists in Jamroom before 4.2.7 via the Status Update field.    4.3  Medium  2017-06-12  2017-06-09  View
86724  CVE-2014-3498  The user module in ansible before 1.6.6 allows remote authenticated users to execute arbitrary commands.    6.5  Medium  2017-06-18  2017-06-14  View
86725  CVE-2014-4843  Curam Universal Access in IBM Curam Social Program Management (SPM) 6.0 SP2 before EP26, 6.0.4 before 6.0.4.6, and 6.0.5 before 6.0.5.5 iFix5 allows remote attackers to obtain sensitive information about internal caseworker usernames via vectors related to a URL.    Medium  2017-06-18  2017-06-15  View

Page 17345 of 17672, showing 5 records out of 88360 total, starting on record 86721, ending on 86725

Actions