NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 25588 | CVE-2015-4038 | The WP Membership plugin 1.2.3 for WordPress allows remote authenticated users to gain administrator privileges via an iv_membership_update_user_settings action to wp-admin/admin-ajax.php. | 2 | 6.5 | Medium | 2017-07-18 | 2017-07-17 | View | |
| 86515 | CVE-2017-9336 | The WP Editor.MD plugin 1.6 for WordPress has a stored XSS vulnerability in the content of a post. | 2 | 4.3 | Medium | 2017-06-12 | 2017-06-09 | View | |
| 35072 | CVE-2014-7771 | The World Tamil Bayan (aka com.wWorldTamilBayan) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 2 | 5.4 | Medium | 2017-01-19 | 2014-11-14 | View | |
| 33430 | CVE-2014-5806 | The World of Tanks Assistant (aka ru.worldoftanks.mobile) application 1.7.5 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 2 | 5.4 | Medium | 2017-01-19 | 2014-09-18 | View | |
| 34146 | CVE-2014-6671 | The World Cup 2014 Brazil - Xem TV (aka vn.letshare.football.worldcup) application 2.6 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 2 | 5.4 | Medium | 2017-01-19 | 2014-09-28 | View |
Page 2632 of 17672, showing 5 records out of 88360 total, starting on record 13156, ending on 13160