NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 86773 | CVE-2015-7326 | XML External Entity (XXE) vulnerability in Milton Webdav before 2.7.0.3. | 2 | 7.5 | High | 2017-06-18 | 2017-06-13 | View | |
| 27968 | CVE-2015-7323 | The Secure Meeting (Pulse Collaboration) in Pulse Connect Secure (formerly Juniper Junos Pulse) before 7.1R22.1, 7.4, 8.0 before 8.0R11, and 8.1 before 8.1R3 allows remote authenticated users to bypass intended access restrictions and log into arbitrary meetings by leveraging a meeting id and meetingAppSun.jar. | 2 | 3.5 | Low | 2017-01-19 | 2016-12-07 | View | |
| 27967 | CVE-2015-7322 | The Secure Meeting (Pulse Collaboration) in Pulse Connect Secure (formerly Juniper Junos Pulse) before 7.1R22.1, 7.4, 8.0 before 8.0R11, and 8.1 before 8.1R3 provides different messages for attempts to join a meeting depending on the status of the meeting, which allows remote attackers to enumerate valid meeting ids via a series of requests. | 2 | 5 | Medium | 2017-01-19 | 2016-12-07 | View | |
| 27966 | CVE-2015-7320 | Multiple cross-site scripting (XSS) vulnerabilities in cpabc_appointments_admin_int_bookings_list.inc.php in the Appointment Booking Calendar plugin before 1.1.8 for WordPress allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-07 | View | |
| 27965 | CVE-2015-7319 | SQL injection vulnerability in cpabc_appointments_admin_int_calendar_list.inc.php in the Appointment Booking Calendar plugin before 1.1.8 for WordPress allows remote attackers to execute arbitrary SQL commands via unspecified vectors related to updating the username. | 2 | 7.5 | High | 2017-07-18 | 2017-07-17 | View |
Page 2756 of 17672, showing 5 records out of 88360 total, starting on record 13776, ending on 13780