NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
18079  CVE-2016-1730  WebSheet in Apple iOS before 9.2.1 allows remote attackers to read or write to cookies by operating a crafted captive portal.    5.8  Medium  2017-01-19  2016-12-05  View
35128  CVE-2014-7835  webservice/upload.php in Moodle 2.6.x before 2.6.6 and 2.7.x before 2.7.3 does not ensure that a file upload is for a private or draft area, which allows remote authenticated users to upload files containing JavaScript, and consequently conduct cross-site scripting (XSS) attacks, by specifying the profile-picture area.    2.1  Low  2017-01-19  2015-09-03  View
45794  CVE-2012-4402  webservice/lib.php in Moodle 2.1.x before 2.1.8, 2.2.x before 2.2.5, and 2.3.x before 2.3.2 does not properly restrict the use of web-service tokens, which allows remote authenticated users to run arbitrary external-service functions via a token intended for only one service.    4.9  Medium  2017-01-19  2012-10-26  View
24927  CVE-2015-2979  Webservice-DIC yoyaku_v41 allows remote attackers to execute arbitrary OS commands via unspecified vectors.    7.5  High  2017-01-19  2015-07-29  View
24925  CVE-2015-2977  Webservice-DIC yoyaku_v41 allows remote attackers to create arbitrary files, and consequently execute arbitrary code, via unspecified vectors.    7.5  High  2017-01-19  2015-07-29  View

Page 268 of 17672, showing 5 records out of 88360 total, starting on record 1336, ending on 1340

Actions