NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86515 | CVE-2017-9336 | The WP Editor.MD plugin 1.6 for WordPress has a stored XSS vulnerability in the content of a post. | 2 | 4.3 | Medium | 2017-06-12 | 2017-06-09 | View | |
86514 | CVE-2017-9334 | An incorrect pair? check in the Scheme length procedure results in an unsafe pointer dereference in all CHICKEN Scheme versions prior to 4.13, which allows an attacker to cause a denial of service by passing an improper list to an application that calls length on it. | 2 | 5 | Medium | 2017-06-12 | 2017-06-09 | View | |
86513 | CVE-2017-9331 | The Agenda component in Telaxus EPESI 1.8.2 and earlier has a Stored Cross-site Scripting (XSS) vulnerability in modules/Utils/RecordBrowser/RecordBrowserCommon_0.php, which allows remote attackers to inject arbitrary web script or HTML via a crafted meeting description parameter. | 2 | 3.5 | Low | 2017-06-12 | 2017-06-09 | View | |
86512 | CVE-2017-9307 | SSRF vulnerability in remotedownload.php in Allen Disk 1.6 allows remote authenticated users to conduct port scans and access intranet servers via a crafted file parameter. | 2 | 4 | Medium | 2017-06-12 | 2017-06-09 | View | |
86511 | CVE-2017-9306 | inc/SP/Html/Html.class.php in sysPass 2.1.9 allows remote attackers to bypass the XSS filter, as demonstrated by use of an <svg/onload= substring instead of an <svg onload= substring. | 2 | 4.3 | Medium | 2017-06-12 | 2017-06-09 | View |
Page 370 of 17672, showing 5 records out of 88360 total, starting on record 1846, ending on 1850