NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
26180  CVE-2015-4861  Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier, and 5.6.26 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server : InnoDB.    3.5  Low  2017-01-19  2016-12-23  View
36164  CVE-2014-9461  Directory traversal vulnerability in models/Cart66.php in the Cart66 Lite plugin before 1.5.4 for WordPress allows remote authenticated users to read arbitrary files via a .. (dot dot) in the member_download action to wp-admin/admin-ajax.php.    3.5  Low  2017-01-19  2015-01-05  View
1861  CVE-2008-1924  Unspecified vulnerability in phpMyAdmin before 2.11.5.2, when running on shared hosts, allows remote authenticated users with CREATE table permissions to read arbitrary files via a crafted HTTP POST request, related to use of an undefined UploadDir variable.    3.5  Low  2017-01-03  2011-04-12  View
18757  CVE-2016-2559  Cross-site scripting (XSS) vulnerability in the format function in libraries/sql-parser/src/Utils/Error.php in the SQL parser in phpMyAdmin 4.5.x before 4.5.5.1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted query.    3.5  Low  2017-01-19  2016-12-02  View
85317  CVE-2016-4888  Cross-site scripting (XSS) vulnerability in ZOHO ManageEngine ServiceDesk Plus before 9.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    3.5  Low  2017-04-27  2017-04-21  View

Page 2612 of 17672, showing 5 records out of 88360 total, starting on record 13056, ending on 13060

Actions