NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
1569  CVE-2008-1627  CDS Invenio 0.92.1 and earlier allows remote authenticated users to delete email notification alerts of arbitrary users via a modified internal UID.    3.5  Low  2017-01-03  2008-09-05  View
84769  CVE-2017-7188  Zurmo 3.1.1 Stable allows a Cross-Site Scripting (XSS) attack with a base64-encoded SCRIPT element within a data: URL in the returnUrl parameter to default/toggleCollapse.    3.5  Low  2017-04-27  2017-04-21  View
26401  CVE-2015-5150  Multiple cross-site scripting (XSS) vulnerabilities in Zoho ManageEngine SupportCenter Plus 7.90 allow remote authenticated users to inject arbitrary web script or HTML via the (1) query parameter in the run_query_editor_query module to CustomReportHandler.do, (2) compAcct parameter to jsp/ResetADPwd.jsp, or (3) redirectTo parameter to jsp/CacheScreenWidth.jsp.    3.5  Low  2017-01-19  2015-07-01  View
34081  CVE-2014-6592  Unspecified vulnerability in the Oracle OpenSSO component in Oracle Fusion Middleware 8.0 Update 2 Patch 5 allows remote authenticated users to affect integrity via vectors related to SAML, a different vulnerability than CVE-2015-0389.    3.5  Low  2017-01-19  2016-06-16  View
65057  CVE-2006-6512  Directory traversal vulnerability in the Browse function (/browse URI) in Winamp Web Interface (Wawi) 7.5.13 and earlier allows remote authenticated users to list arbitrary directories via URL encoded backslashes ("%2F") in the path parameter.    3.5  Low  2016-12-20  2011-03-07  View

Page 2569 of 17672, showing 5 records out of 88360 total, starting on record 12841, ending on 12845

Actions