NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83356 | CVE-2017-6446 | XSS was discovered in Dotclear v2.11.2, affecting admin/blogs.php and admin/users.php with the sortby and order parameters. | 2 | 4.3 | Medium | 2017-03-18 | 2017-03-07 | View | |
81682 | CVE-2017-5875 | XSS was discovered in dotCMS 3.7.0, with an authenticated attack against the /myAccount addressID parameter. | 2 | 3.5 | Low | 2017-02-15 | 2017-02-09 | View | |
81684 | CVE-2017-5877 | XSS was discovered in dotCMS 3.7.0, with an unauthenticated attack against the /about-us/locations/index direction parameter. | 2 | 4.3 | Medium | 2017-02-15 | 2017-02-09 | View | |
81683 | CVE-2017-5876 | XSS was discovered in dotCMS 3.7.0, with an unauthenticated attack against the /news-events/events date parameter. | 2 | 4.3 | Medium | 2017-02-15 | 2017-02-09 | View | |
85498 | CVE-2017-7957 | XStream through 1.4.9, when a certain denyTypes workaround is not used, mishandles attempts to create an instance of the primitive type 'void' during unmarshalling, leading to a remote application crash, as demonstrated by an xstream.fromXML(<void/>) call. | 2 | 5 | Medium | 2017-05-27 | 2017-05-09 | View |
Page 17617 of 17672, showing 5 records out of 88360 total, starting on record 88081, ending on 88085