NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83907  CVE-2015-8687  Multiple cross-site scripting (XSS) vulnerabilities in the Management Console in Alcatel-Lucent Motive Home Device Manager (HDM) before 4.2 allow remote attackers to inject arbitrary web script or HTML via the (1) deviceTypeID parameter to DeviceType/getDeviceType.do; the (2) policyActionClass or (3) policyActionName parameter to PolicyAction/findPolicyActions.do; the deviceID parameter to (4) SingleDeviceMgmt/getDevice.do or (5) device/editDevice.do; the operation parameter to (6) ajax.do or (7) xmlHttp.do; or the (8) policyAction, (9) policyClass, or (10) policyName parameter to policy/findPolicies.do.    3.5  Low  2017-03-29  2017-03-28  View
17373  CVE-2016-1000124  Unauthenticated SQL Injection in Huge-IT Portfolio Gallery Plugin v1.0.6    7.5  High  2017-03-29  2017-03-28  View
17374  CVE-2016-1000125  Unauthenticated SQL Injection in Huge-IT Catalog v1.0.7 for Joomla    7.5  High  2017-03-29  2017-03-28  View
83934  CVE-2016-10152  The read_config_file function in lib/hesiod.c in Hesiod 3.2.1 falls back to the ".athena.mit.edu" default domain when opening the configuration file fails, which allows remote attackers to gain root privileges by poisoning the DNS cache.          2017-03-29  2017-03-28  View
82658  CVE-2016-10227  Zyxel USG50 Security Appliance and NWA3560-N Access Point allow remote attackers to cause a denial of service (CPU consumption) via a flood of ICMPv4 Port Unreachable packets.    7.8  High  2017-03-29  2017-03-28  View

Page 1897 of 17672, showing 5 records out of 88360 total, starting on record 9481, ending on 9485

Actions