NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86335 | CVE-2015-4704 | Directory traversal vulnerability in the Download Zip Attachments plugin 1.0 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the File parameter to download.php. | 2 | 5 | Medium | 2017-06-04 | 2017-05-31 | View | |
86334 | CVE-2015-4455 | Unrestricted file upload vulnerability in includes/upload.php in the Aviary Image Editor Add-on For Gravity Forms plugin 3.0 beta for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in wp-content/uploads/gform_aviary. | 2 | 7.5 | High | 2017-06-12 | 2017-06-08 | View | |
86333 | CVE-2015-4054 | PgBouncer before 1.5.5 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) by sending a password packet before a startup packet. | 2 | 5 | Medium | 2017-06-04 | 2017-06-02 | View | |
86332 | CVE-2015-4046 | The asset discovery scanner in AlienVault OSSIM before 5.0.1 allows remote authenticated users to execute arbitrary commands via the assets array parameter to netscan/do_scan.php. | 2 | 6.5 | Medium | 2017-06-04 | 2017-05-30 | View | |
86331 | CVE-2015-4045 | The sudoers file in the asset discovery scanner in AlienVault OSSIM before 5.0.1 allows local users to gain privileges via a crafted nmap script. | 2 | 7.2 | High | 2017-06-04 | 2017-05-30 | View |
Page 406 of 17672, showing 5 records out of 88360 total, starting on record 2026, ending on 2030