NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 40474 | CVE-2013-5005 | Multiple cross-site scripting (XSS) vulnerabilities in ajaxRequest/methodCall.do in Tripwire Enterprise 8.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) m_target_class_name, (2) m_target_method_name, or (3) m_request_context_params parameters. | 2 | 4.3 | Medium | 2017-01-18 | 2016-12-30 | View | |
| 42010 | CVE-2013-7277 | Multiple cross-site scripting (XSS) vulnerabilities in Andy"s PHP Knowledgebase (Aphpkb) before 0.95.8 allow remote attackers to inject arbitrary web script or HTML via the (1) HTTP Referer header to saa.php, (2) username parameter to login.php, or (3) keyword_list parameter to keysearch.php. | 2 | 4.3 | Medium | 2017-01-18 | 2016-12-30 | View | |
| 25371 | CVE-2015-3724 | CoreGraphics in Apple iOS before 8.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted ICC profile in a PDF document, a different vulnerability than CVE-2015-3723. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-30 | View | |
| 25627 | CVE-2015-4135 | Cross-site scripting (XSS) vulnerability in goto.php in phpwind 8.7 allows remote attackers to inject arbitrary web script or HTML via the url parameter. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-30 | View | |
| 25372 | CVE-2015-3725 | MobileInstallation in Apple iOS before 8.4 does not ensure the uniqueness of Watch bundle IDs, which allows attackers to cause a denial of service (ID collision and Watch launch outage) via a crafted universal provisioning profile app. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-30 | View |
Page 2907 of 17672, showing 5 records out of 88360 total, starting on record 14531, ending on 14535