NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
82264  CVE-2017-5962  An issue was discovered in contexts_wurfl (for TYPO3) before 0.4.2. The vulnerability exists due to insufficient filtration of user-supplied data in the force_ua HTTP GET parameter passed to the /contexts_wurfl/Library/wurfl-dbapi-1.4.4.0/check_wurfl.php URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.    4.3  Medium  2017-03-18  2017-03-03  View
83544  CVE-2014-8688  An issue was discovered in Telegram Messenger 2.6 for iOS and 1.8.2 for Android. Secret chat messages are available in cleartext in process memory and a .db file.    Medium  2017-03-18  2017-03-15  View
82265  CVE-2017-5963  An issue was discovered in caddy (for TYPO3) before 7.2.10. The vulnerability exists due to insufficient filtration of user-supplied data in the paymillToken HTTP POST parameter passed to the caddy/Resources/Public/JavaScript/e-payment/paymill/api/php/payment.php URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.    4.3  Medium  2017-03-18  2017-03-03  View
83289  CVE-2017-6180  Keekoon KK002 devices 1.8.12 HD have a Cross Site Request Forgery Vulnerability affecting goform/formChnUserPwd and goform/formUserMng (and the entire set of other pages).    6.8  Medium  2017-03-18  2017-03-14  View
83545  CVE-2014-8701  Wonder CMS 2014 allows remote attackers to obtain sensitive information by viewing /files/password, which reveals the unsalted MD5 hashed password.          2017-03-18  2017-03-17  View

Page 1998 of 17672, showing 5 records out of 88360 total, starting on record 9986, ending on 9990

Actions