NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 27976 | CVE-2015-7362 | Fortinet FortiClient Linux SSLVPN before build 2313, when installed on Linux in a home directory that is world readable and executable, allows local users to gain privileges via the helper/subroc setuid program. | 2 | 7.2 | High | 2017-01-19 | 2016-12-02 | View | |
| 27975 | CVE-2015-7361 | FortiOS 5.2.3, when configured to use High Availability (HA) and the dedicated management interface is enabled, does not require authentication for access to the ZebOS shell on the HA dedicated management interface, which allows remote attackers to obtain shell access via unspecified vectors. | 2 | 9.3 | High | 2017-01-19 | 2016-12-02 | View | |
| 27974 | CVE-2015-7360 | Multiple cross-site scripting (XSS) vulnerabilities in the Web User Interface (WebUI) in Fortinet FortiSandbox before 2.1 allow remote attackers to inject arbitrary web script or HTML via the (1) serial parameter to alerts/summary/profile/; the (2) urlForCreatingReport parameter to csearch/report/export/; the (3) id parameter to analysis/detail/download/screenshot; or vectors related to (4) "Fortiview threats by users search filtered by vdom" or (5) "PCAP file download generated by the VM scan feature." | 2 | 4.3 | Medium | 2017-01-19 | 2016-05-26 | View | |
| 27973 | CVE-2015-7348 | Cross-site scripting (XSS) vulnerability in zTree 3.5.19.1 and possibly earlier allows remote attackers to inject arbitrary web script or HTML via the id parameter to demo/en/asyncData/getNodesForBigData.php. | 2 | 4.3 | Medium | 2017-01-19 | 2015-12-08 | View | |
| 86774 | CVE-2015-7346 | SQL injection vulnerability in ZCMS 1.1. | 2 | 7.5 | High | 2017-06-18 | 2017-06-12 | View |
Page 2754 of 17672, showing 5 records out of 88360 total, starting on record 13766, ending on 13770