NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
27976  CVE-2015-7362  Fortinet FortiClient Linux SSLVPN before build 2313, when installed on Linux in a home directory that is world readable and executable, allows local users to gain privileges via the helper/subroc setuid program.    7.2  High  2017-01-19  2016-12-02  View
27975  CVE-2015-7361  FortiOS 5.2.3, when configured to use High Availability (HA) and the dedicated management interface is enabled, does not require authentication for access to the ZebOS shell on the HA dedicated management interface, which allows remote attackers to obtain shell access via unspecified vectors.    9.3  High  2017-01-19  2016-12-02  View
27974  CVE-2015-7360  Multiple cross-site scripting (XSS) vulnerabilities in the Web User Interface (WebUI) in Fortinet FortiSandbox before 2.1 allow remote attackers to inject arbitrary web script or HTML via the (1) serial parameter to alerts/summary/profile/; the (2) urlForCreatingReport parameter to csearch/report/export/; the (3) id parameter to analysis/detail/download/screenshot; or vectors related to (4) "Fortiview threats by users search filtered by vdom" or (5) "PCAP file download generated by the VM scan feature."    4.3  Medium  2017-01-19  2016-05-26  View
27973  CVE-2015-7348  Cross-site scripting (XSS) vulnerability in zTree 3.5.19.1 and possibly earlier allows remote attackers to inject arbitrary web script or HTML via the id parameter to demo/en/asyncData/getNodesForBigData.php.    4.3  Medium  2017-01-19  2015-12-08  View
86774  CVE-2015-7346  SQL injection vulnerability in ZCMS 1.1.    7.5  High  2017-06-18  2017-06-12  View

Page 2754 of 17672, showing 5 records out of 88360 total, starting on record 13766, ending on 13770

Actions