NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 25082 | CVE-2015-3180 | lib/navigationlib.php in Moodle through 2.5.9, 2.6.x before 2.6.11, 2.7.x before 2.7.8, and 2.8.x before 2.8.6 allows remote authenticated users to obtain sensitive course-structure information by leveraging access to a student account with a suspended enrolment. | 2 | 4 | Medium | 2017-01-19 | 2016-12-30 | View | |
| 36090 | CVE-2014-9379 | The radius_get_attribute function in dissectors/ec_radius.c in Ettercap 0.8.1 performs an incorrect cast, which allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via unspecified vectors, which triggers a stack-based buffer overflow. | 2 | 7.5 | High | 2017-01-19 | 2016-12-30 | View | |
| 25083 | CVE-2015-3181 | files/externallib.php in Moodle through 2.5.9, 2.6.x before 2.6.11, 2.7.x before 2.7.8, and 2.8.x before 2.8.6 does not consider the moodle/user:manageownfiles capability before approving a private-file upload, which allows remote authenticated users to bypass intended file-management restrictions by using web services to perform uploads after this capability has been revoked. | 2 | 4 | Medium | 2017-01-19 | 2016-12-30 | View | |
| 36091 | CVE-2014-9380 | The dissector_cvs function in dissectors/ec_cvs.c in Ettercap 0.8.1 allows remote attackers to cause a denial of service (out-of-bounds read) via a packet containing only a CVS_LOGIN signature. | 2 | 5 | Medium | 2017-01-19 | 2016-12-30 | View | |
| 41979 | CVE-2013-7241 | Cross-site scripting (XSS) vulnerability in the export function in zp-core/zp-extensions/mergedRSS.php in Zenphoto before 1.4.5.4 allows remote attackers to inject arbitrary web script or HTML via the URI. | 2 | 4.3 | Medium | 2017-01-18 | 2016-12-30 | View |
Page 2982 of 17672, showing 5 records out of 88360 total, starting on record 14906, ending on 14910