NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 26180 | CVE-2015-4861 | Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier, and 5.6.26 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server : InnoDB. | 2 | 3.5 | Low | 2017-01-19 | 2016-12-23 | View | |
| 36164 | CVE-2014-9461 | Directory traversal vulnerability in models/Cart66.php in the Cart66 Lite plugin before 1.5.4 for WordPress allows remote authenticated users to read arbitrary files via a .. (dot dot) in the member_download action to wp-admin/admin-ajax.php. | 2 | 3.5 | Low | 2017-01-19 | 2015-01-05 | View | |
| 1861 | CVE-2008-1924 | Unspecified vulnerability in phpMyAdmin before 2.11.5.2, when running on shared hosts, allows remote authenticated users with CREATE table permissions to read arbitrary files via a crafted HTTP POST request, related to use of an undefined UploadDir variable. | 2 | 3.5 | Low | 2017-01-03 | 2011-04-12 | View | |
| 18757 | CVE-2016-2559 | Cross-site scripting (XSS) vulnerability in the format function in libraries/sql-parser/src/Utils/Error.php in the SQL parser in phpMyAdmin 4.5.x before 4.5.5.1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted query. | 2 | 3.5 | Low | 2017-01-19 | 2016-12-02 | View | |
| 85317 | CVE-2016-4888 | Cross-site scripting (XSS) vulnerability in ZOHO ManageEngine ServiceDesk Plus before 9.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 3.5 | Low | 2017-04-27 | 2017-04-21 | View |
Page 2612 of 17672, showing 5 records out of 88360 total, starting on record 13056, ending on 13060