NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83551  CVE-2014-8707  Cross-site scripting (XSS) vulnerability in TinyMCE in Pluck CMS 4.7.2 allows remote authenticated users to inject arbitrary web script or HTML via the "edit HTML source" option.          2017-03-18  2017-03-17  View
83296  CVE-2017-6314  The make_available_at_least function in io-tiff.c in gdk-pixbuf allows context-dependent attackers to cause a denial of service (infinite loop) via a large TIFF file.    4.3  Medium  2017-03-18  2017-03-13  View
83552  CVE-2014-8708  Pluck CMS 4.7.2 allows remote attackers to execute arbitrary code via the blog form feature.          2017-03-18  2017-03-17  View
83553  CVE-2014-8722  GetSimple CMS 3.3.4 allows remote attackers to obtain sensitive information via a direct request to (1) data/users/<username>.xml, (2) backups/users/<username>.xml.bak, (3) data/other/authorization.xml, or (4) data/other/appid.xml.          2017-03-18  2017-03-17  View
83298  CVE-2017-6319  The dex_parse_debug_item function in libr/bin/p/bin_dex.c in radare2 1.2.1 allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted DEX file.    6.8  Medium  2017-03-18  2017-03-03  View

Page 2001 of 17672, showing 5 records out of 88360 total, starting on record 10001, ending on 10005

Actions