NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 83458 | CVE-2017-6816 | In WordPress before 4.7.3 (wp-admin/plugins.php), unintended files can be deleted by administrators using the plugin deletion functionality. | 2 | 4 | Medium | 2017-07-18 | 2017-07-17 | View | |
| 18434 | CVE-2016-2159 | The save_submission function in mod/assign/externallib.php in Moodle through 2.6.11, 2.7.x before 2.7.13, 2.8.x before 2.8.11, 2.9.x before 2.9.5, and 3.0.x before 3.0.3 allows remote authenticated users to bypass intended due-date restrictions by leveraging the student role for a web-service request. | 2 | 4 | Medium | 2017-01-19 | 2016-05-24 | View | |
| 84226 | CVE-2017-1171 | The IBM TRIRIGA Application Platform 3.3, 3,4, and 3,5 contain a vulnerability that could allow an authenticated user to execute Application actions they do not have access to. IBM Reference #: 2001083. | 2 | 4 | Medium | 2017-04-27 | 2017-04-04 | View | |
| 86018 | CVE-2017-7433 | An absolute path traversal vulnerability (CWE-36) in Micro Focus Vibe 4.0.2 and earlier allows a remote authenticated attacker to download arbitrary files from the server by submitting a specially crafted request to the viewFile endpoint. Note that the attack can be performed without authentication if Guest access is enabled (Guest access is disabled by default). | 2 | 4 | Medium | 2017-06-03 | 2017-06-01 | View | |
| 50434 | CVE-2009-3229 | The core server component in PostgreSQL 8.4 before 8.4.1, 8.3 before 8.3.8, and 8.2 before 8.2.14 allows remote authenticated users to cause a denial of service (backend shutdown) by "re-LOAD-ing" libraries from a certain plugins directory. | 2 | 4 | Medium | 2017-01-07 | 2016-08-22 | View |
Page 2926 of 17672, showing 5 records out of 88360 total, starting on record 14626, ending on 14630