NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
15888  CVE-2010-4641  SQL injection vulnerability in XWiki Enterprise before 2.5 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.    7.5  High  2017-01-18  2010-12-31  View
17424  CVE-2016-10034  The setFrom function in the Sendmail adapter in the zend-mail component before 2.4.11, 2.5.x, 2.6.x, and 2.7.x before 2.7.2, and Zend Framework before 2.4.11 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a " (backslash double quote) in a crafted e-mail address.    7.5  High  2017-01-19  2017-01-03  View
86288  CVE-2017-9199  libautotrace.a in AutoTrace 0.31.1 has a cannot be represented in type int issue in input-tga.c:192:19.    7.5  High  2017-06-03  2017-05-28  View
25104  CVE-2015-3209  Heap-based buffer overflow in the PCNET controller in QEMU allows remote attackers to execute arbitrary code by sending a packet with TXSTATUS_STARTPACKET set and then a crafted packet with TXSTATUS_DEVICEOWNS set.    7.5  High  2017-05-27  2017-05-23  View
25616  CVE-2015-4109  Multiple SQL injection vulnerabilities in the ratings module in the Users Ultra plugin before 1.5.16 for WordPress allow remote attackers to execute arbitrary SQL commands via the (1) data_target or (2) data_vote parameter in a rating_vote (wp_ajax_nopriv_rating_vote) action to wp-admin/admin-ajax.php.    7.5  High  2017-01-19  2016-12-05  View

Page 2124 of 17672, showing 5 records out of 88360 total, starting on record 10616, ending on 10620

Actions