NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
33671  CVE-2014-6074  IBM UrbanCode Deploy 6.1.0.2 before IF1 allows remote authenticated users to read keystore secret keys via a direct request to a UI page.    Medium  2017-01-19  2017-01-06  View
44167  CVE-2012-2355  Moodle 2.1.x before 2.1.6 and 2.2.x before 2.2.3 allows remote authenticated users to bypass question:use* capability requirements and add arbitrary questions to a quiz via the questions feature.    Medium  2017-01-19  2012-07-23  View
55175  CVE-2007-3018  activeWeb contentserver CMS before 5.6.2964 does not limit the file-creation ability of editors who have restricted accounts, which allows these editors to create files in arbitrary directories.    Medium  2017-01-07  2008-11-15  View
70024  CVE-2005-4426  Interpretation conflict in YaBB before 2.1 allows remote authenticated users to inject arbitrary web script or HTML via HTML in a file with a GIF file extension, which causes the HTML to be executed by a victim who views the file in Internet Explorer as a result of CVE-2005-3312. NOTE: it could be argued that this vulnerability is due to a design flaw in Internet Explorer and the proper fix should be in that browser; if so, then this should not be treated as a vulnerability in YaBB.    Medium  2017-01-03  2008-09-05  View
29320  CVE-2014-0425  Unspecified vulnerability in the PeopleSoft Enterprise SCM Services Procurement component in Oracle PeopleSoft Products 9.2 allows remote authenticated users to affect confidentiality via unknown vectors related to Security.    Medium  2017-01-19  2014-02-06  View

Page 3130 of 17672, showing 5 records out of 88360 total, starting on record 15646, ending on 15650

Actions