NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
85241  CVE-2015-6567  Wolf CMS before 0.8.3.1 allows unrestricted file upload and PHP Code Execution because admin/plugin/file_manager/browse/ (aka the filemanager) does not validate the parameter "filename" properly. Exploitation requires a registered user who has access to upload functionality.    6.5  Medium  2017-04-27  2017-04-21  View
85242  CVE-2015-6568  Wolf CMS before 0.8.3.1 allows unrestricted file rename and PHP Code Execution because admin/plugin/file_manager/browse/ (aka the filemanager) does not prevent a change of a file extension to ".php" after originally using the parameter "filename" for uploading a JPEG image. Exploitation requires a registered user who has access to upload functionality.    6.5  Medium  2017-04-27  2017-04-21  View
84991  CVE-2017-7946  The get_relocs_64 function in libr/bin/format/mach0/mach0.c in radare2 1.3.0 allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted Mach0 file.    4.3  Medium  2017-04-27  2017-04-21  View
85252  CVE-2015-8270  The AMF3ReadString function in amf.c in RTMPDump 2.4 allows remote RTMP Media servers to cause a denial of service (invalid pointer dereference and process crash).    Medium  2017-04-27  2017-04-20  View
85253  CVE-2015-8271  The AMF3CD_AddProp function in amf.c in RTMPDump 2.4 allows remote RTMP Media servers to execute arbitrary code.    7.5  High  2017-04-27  2017-04-20  View

Page 1797 of 17672, showing 5 records out of 88360 total, starting on record 8981, ending on 8985

Actions