NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
82918  CVE-2016-7111  MantisBT before 1.3.1 and 2.x before 2.0.0-beta.2 uses a weak Content Security Policy when using the Gravatar plugin, which allows remote attackers to conduct cross-site scripting (XSS) attacks via unspecified vectors.    2.6  Low  2017-02-28  2017-02-22  View
82663  CVE-2016-4041  Plone 4.0 through 5.1a1 does not have security declarations for Dexterity content-related WebDAV requests, which allows remote attackers to gain webdav access via unspecified vectors.    7.5  High  2017-02-28  2017-02-27  View
82919  CVE-2016-7510  The read_line_table_program function in dwarf_line_table_reader_common.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read) via crafted input.    4.3  Medium  2017-02-28  2017-02-22  View
30439  CVE-2014-1903  admin/libraries/view.functions.php in FreePBX 2.9 before 2.9.0.14, 2.10 before 2.10.1.15, 2.11 before 2.11.0.23, and 12 before 12.0.1alpha22 does not restrict the set of functions accessible to the API handler, which allows remote attackers to execute arbitrary PHP code via the function and args parameters to admin/config.php.    7.5  High  2017-02-28  2017-02-23  View
82664  CVE-2016-4042  Plone 3.3 through 5.1a1 allows remote attackers to obtain information about the ID of sensitive content via unspecified vectors.    Medium  2017-02-28  2017-02-27  View

Page 2144 of 17672, showing 5 records out of 88360 total, starting on record 10716, ending on 10720

Actions