NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
86110 | CVE-2017-8876 | Symphony 2 2.6.11 has XSS in the meta[navigation_group] parameter to content/content.blueprintssections.php. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-15 | View | |
86109 | CVE-2017-8875 | CSRF in the Clean Login plugin before 1.8 for WordPress allows remote attackers to change the login redirect URL or logout redirect URL. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-18 | View | |
86108 | CVE-2017-8874 | Multiple cross-site request forgery (CSRF) vulnerabilities in Mautic 1.4.1 allow remote attackers to hijack the authentication of users for requests that (1) delete email campaigns or (2) delete contacts. | 2 | 6.8 | Medium | 2017-05-27 | 2017-05-17 | View | |
86107 | CVE-2017-8872 | The htmlParseTryOrFinish function in HTMLparser.c in libxml2 2.9.4 allows attackers to cause a denial of service (buffer over-read) or information disclosure. | 2 | 6.4 | Medium | 2017-05-27 | 2017-05-15 | View | |
86106 | CVE-2017-8868 | acp/core/files.browser.php in flatCore 1.4.7 allows file deletion via directory traversal in the delete parameter to acp/acp.php. The risk might be limited to requests submitted through CSRF. | 2 | 5 | Medium | 2017-05-27 | 2017-05-17 | View |
Page 451 of 17672, showing 5 records out of 88360 total, starting on record 2251, ending on 2255