NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
23401 | CVE-2015-1000005 | Remote file download vulnerability in candidate-application-form v1.0 wordpress plugin | 2 | 5 | Medium | 2017-03-29 | 2017-03-28 | View | |
23402 | CVE-2015-1000006 | Remote file download vulnerability in recent-backups v0.7 wordpress plugin | 2 | 5 | Medium | 2017-03-29 | 2017-03-28 | View | |
84082 | CVE-2016-10203 | Cross-site scripting (XSS) vulnerability in Zoneminder 1.30 and earlier allows remote attackers to inject arbitrary web script or HTML via the name when creating a new monitor. | 2 | 4.3 | Medium | 2017-03-29 | 2017-03-28 | View | |
84083 | CVE-2016-10205 | Session fixation vulnerability in Zoneminder 1.30 and earlier allows remote attackers to hijack web sessions via the ZMSESSID cookie. | 2 | 7.5 | High | 2017-03-29 | 2017-03-28 | View | |
84084 | CVE-2016-10206 | Cross-site request forgery (CSRF) vulnerability in Zoneminder 1.30 and earlier allows remote attackers to hijack the authentication of users for requests that change passwords and possibly have unspecified other impact as demonstrated by a crafted user action request to index.php. | 2 | 6.8 | Medium | 2017-03-29 | 2017-03-28 | View |
Page 1891 of 17672, showing 5 records out of 88360 total, starting on record 9451, ending on 9455