NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
20995  CVE-2016-5944  Cross-site scripting (XSS) vulnerability in the Web UI in IBM Spectrum Control (formerly Tivoli Storage Productivity Center) 5.2.x before 5.2.11 allows remote authenticated users to inject arbitrary web script or HTML via an embedded string.    3.5  Low  2017-01-19  2016-11-28  View
86531  CVE-2017-9360  WebsiteBaker v2.10.0 has a SQL injection vulnerability in /account/details.php.    7.5  High  2017-06-12  2017-06-06  View
21251  CVE-2016-6486  Siemens SINEMA Server uses weak permissions for the application folder, which allows local users to gain privileges via unspecified vectors.    7.2  High  2017-01-19  2016-11-28  View
86787  CVE-2016-0767  PostgreSQL PL/Java before 1.5.0 allows remote authenticated users with USAGE permission on the public schema to alter the public schema classpath.    Medium  2017-06-18  2017-06-13  View
21507  CVE-2016-6897  Cross-site request forgery (CSRF) vulnerability in the wp_ajax_update_plugin function in wp-admin/includes/ajax-actions.php in WordPress before 4.6 allows remote attackers to hijack the authentication of subscribers for /dev/random read operations by leveraging a late call to the check_ajax_referer function, a related issue to CVE-2016-6896.    4.3  Medium  2017-07-18  2017-07-17  View

Page 588 of 17672, showing 5 records out of 88360 total, starting on record 2936, ending on 2940

Actions