NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
72937  CVE-2004-2560  DokuWiki before 2004-10-19, when used on a web server that permits execution based on file extension, allows remote attackers to execute arbitrary code by uploading a file with an appropriate extension such as .php or .cgi.    7.5  High  2017-07-18  2017-07-10  View
74217  CVE-2003-1145  Cross-site scripting (XSS) vulnerability in friendmail.php in OpenAutoClassifieds 1.0 allows remote attackers to inject arbitrary web script or HTML via the listing parameter.    6.8  Medium  2017-07-18  2017-07-10  View
81641  CVE-2017-5541  Directory traversal vulnerability in template/usererror.missing_extension.php in Symphony CMS before 2.6.10 allows remote attackers to rename arbitrary files via a .. (dot dot) in the existing-folder and new-folder parameters.    Medium  2017-02-07  2017-01-26  View
82153  CVE-2017-0433  An elevation of privilege vulnerability in the Synaptics touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the touchscreen chipset. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10. Android ID: A-31913571.    7.6  High  2017-03-29  2017-03-24  View
83177  CVE-2017-3877  A vulnerability in the web framework of Cisco Unified Communications Manager (CallManager) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack against a user of the web interface of the affected software. More Information: CSCvb70021. Known Affected Releases: 11.5(1.11007.2).    4.3  Medium  2017-07-18  2017-07-11  View

Page 2025 of 17672, showing 5 records out of 88360 total, starting on record 10121, ending on 10125

Actions