NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
18079 | CVE-2016-1730 | WebSheet in Apple iOS before 9.2.1 allows remote attackers to read or write to cookies by operating a crafted captive portal. | 2 | 5.8 | Medium | 2017-01-19 | 2016-12-05 | View | |
35128 | CVE-2014-7835 | webservice/upload.php in Moodle 2.6.x before 2.6.6 and 2.7.x before 2.7.3 does not ensure that a file upload is for a private or draft area, which allows remote authenticated users to upload files containing JavaScript, and consequently conduct cross-site scripting (XSS) attacks, by specifying the profile-picture area. | 2 | 2.1 | Low | 2017-01-19 | 2015-09-03 | View | |
45794 | CVE-2012-4402 | webservice/lib.php in Moodle 2.1.x before 2.1.8, 2.2.x before 2.2.5, and 2.3.x before 2.3.2 does not properly restrict the use of web-service tokens, which allows remote authenticated users to run arbitrary external-service functions via a token intended for only one service. | 2 | 4.9 | Medium | 2017-01-19 | 2012-10-26 | View | |
24927 | CVE-2015-2979 | Webservice-DIC yoyaku_v41 allows remote attackers to execute arbitrary OS commands via unspecified vectors. | 2 | 7.5 | High | 2017-01-19 | 2015-07-29 | View | |
24925 | CVE-2015-2977 | Webservice-DIC yoyaku_v41 allows remote attackers to create arbitrary files, and consequently execute arbitrary code, via unspecified vectors. | 2 | 7.5 | High | 2017-01-19 | 2015-07-29 | View |
Page 268 of 17672, showing 5 records out of 88360 total, starting on record 1336, ending on 1340