NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
22541 | CVE-2016-9997 | SPIP 3.1.x suffers from a Reflected Cross Site Scripting Vulnerability in /ecrire/exec/puce_statut.php involving the `$id` parameter, as demonstrated by a /ecrire/?exec=puce_statut URL. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-23 | View | |
23309 | CVE-2015-0883 | SYNCK GRAPHICA Mailform Pro CGI 4.1.4 and 4.1.5, when the mailauth module is enabled, does not properly send e-mail messages, which allows remote attackers to execute arbitrary code via unspecified vectors. | 2 | 6.8 | Medium | 2017-01-19 | 2015-02-27 | View | |
23565 | CVE-2015-1196 | GNU patch 2.7.1 allows remote attackers to write to arbitrary files via a symlink attack in a patch file. | 2 | 4.3 | Medium | 2017-01-19 | 2016-10-20 | View | |
24077 | CVE-2015-1863 | Heap-based buffer overflow in wpa_supplicant 1.0 through 2.4 allows remote attackers to cause a denial of service (crash), read memory, or possibly execute arbitrary code via crafted SSID information in a management frame when creating or updating P2P entries. | 2 | 5.8 | Medium | 2017-01-19 | 2017-01-02 | View | |
24333 | CVE-2015-2217 | Multiple cross-site scripting (XSS) vulnerabilities in Ultimate PHP Board (aka myUPB) before 2.2.8 allow remote attackers to inject arbitrary web script or HTML via the (1) q parameter to search.php or (2) avatar parameter to profile.php. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-17 | View |
Page 488 of 17672, showing 5 records out of 88360 total, starting on record 2436, ending on 2440