NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
40474  CVE-2013-5005  Multiple cross-site scripting (XSS) vulnerabilities in ajaxRequest/methodCall.do in Tripwire Enterprise 8.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) m_target_class_name, (2) m_target_method_name, or (3) m_request_context_params parameters.    4.3  Medium  2017-01-18  2016-12-30  View
42010  CVE-2013-7277  Multiple cross-site scripting (XSS) vulnerabilities in Andy"s PHP Knowledgebase (Aphpkb) before 0.95.8 allow remote attackers to inject arbitrary web script or HTML via the (1) HTTP Referer header to saa.php, (2) username parameter to login.php, or (3) keyword_list parameter to keysearch.php.    4.3  Medium  2017-01-18  2016-12-30  View
25371  CVE-2015-3724  CoreGraphics in Apple iOS before 8.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted ICC profile in a PDF document, a different vulnerability than CVE-2015-3723.    6.8  Medium  2017-01-19  2016-12-30  View
25627  CVE-2015-4135  Cross-site scripting (XSS) vulnerability in goto.php in phpwind 8.7 allows remote attackers to inject arbitrary web script or HTML via the url parameter.    4.3  Medium  2017-01-19  2016-12-30  View
25372  CVE-2015-3725  MobileInstallation in Apple iOS before 8.4 does not ensure the uniqueness of Watch bundle IDs, which allows attackers to cause a denial of service (ID collision and Watch launch outage) via a crafted universal provisioning profile app.    4.3  Medium  2017-01-19  2016-12-30  View

Page 2907 of 17672, showing 5 records out of 88360 total, starting on record 14531, ending on 14535

Actions