NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 26033 | CVE-2015-4677 | Cross-site request forgery (CSRF) vulnerability in FiverrScript (aka Fiverr Script) 7.2 allows remote attackers to hijack the authentication of administrators for requests that create a new admin via a request to administrator/admins_create.php. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-07 | View | |
| 26032 | CVE-2015-4676 | SQL injection vulnerability in ticket.php in TickFa 1.x allows remote authenticated users to execute arbitrary SQL commands via the tid parameter in a read action. | 2 | 6.5 | Medium | 2017-01-19 | 2016-12-07 | View | |
| 26031 | CVE-2015-4675 | Buffer overflow in the Tiny SRP library (aka TinySRP) allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted size value for the username field. | 2 | 7.5 | High | 2017-01-19 | 2016-12-07 | View | |
| 26030 | CVE-2015-4674 | The autoupdate implementation in TimeDoctor Pro 1.4.72.3 on Windows relies on unsigned installer files that are retrieved without use of SSL, which makes it easier for man-in-the-middle attackers to execute arbitrary code via a crafted file. | 2 | 9.3 | High | 2017-01-19 | 2016-12-07 | View | |
| 26029 | CVE-2015-4671 | Cross-site scripting (XSS) vulnerability in OpenCart before 2.1.0.2 allows remote attackers to inject arbitrary web script or HTML via the zone_id parameter to index.php. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-07 | View |
Page 3151 of 17672, showing 5 records out of 88360 total, starting on record 15751, ending on 15755