NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
87306 | CVE-2017-9356 | Sitecore.NET 7.1 through 7.2 has a Cross Site Scripting Vulnerability via the searchStr parameter to the /Search-Results URI. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-03 | View | |
87307 | CVE-2017-9424 | IdeaBlade Breeze Breeze.Server.NET before 1.6.5 allows remote attackers to execute arbitrary code, related to use of TypeNameHandling in JSON deserialization. | 2 | 7.5 | High | 2017-07-18 | 2017-06-30 | View | |
87308 | CVE-2017-9668 | In adminaddgroup.php in CMS Made Simple 2.1.6, when adding a user group, there is no XSS filtering, resulting in storage-type XSS generation, via the description parameter in an addgroup action. | 2 | 4.3 | Medium | 2017-06-23 | 2017-06-22 | View | |
87309 | CVE-2017-9730 | SQL injection vulnerability in rdr.php in nuevoMailer version 6.0 and earlier allows remote attackers to execute arbitrary SQL commands via the r parameter. | 2 | 7.5 | High | 2017-06-28 | 2017-06-23 | View | |
87310 | CVE-2017-9741 | install/make-config.php in ProjectSend r754 allows remote attackers to execute arbitrary PHP code via the dbprefix parameter, related to replacing TABLES_PREFIX in the configuration file. | 2 | 7.5 | High | 2017-07-18 | 2017-06-29 | View |
Page 17462 of 17672, showing 5 records out of 88360 total, starting on record 87306, ending on 87310