NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
85320  CVE-2016-4891  Cross-site request forgery (CSRF) vulnerability in SetsucoCMS all versions allows remote attackers to hijack the authentication of an administrator to change settings via unspecified vectors.    6.8  Medium  2017-05-27  2017-05-22  View
85319  CVE-2016-4890  ZOHO ManageEngine ServiceDesk Plus before 9.2 uses an insecure method for generating cookies, which makes it easier for attackers to obtain sensitive password information by leveraging access to a cookie.    Medium  2017-04-27  2017-04-21  View
85318  CVE-2016-4889  ZOHO ManageEngine ServiceDesk Plus before 9.0 allows remote authenticated guest users to have unspecified impact by leveraging failure to restrict access to unknown functions.    6.5  Medium  2017-04-27  2017-04-21  View
85317  CVE-2016-4888  Cross-site scripting (XSS) vulnerability in ZOHO ManageEngine ServiceDesk Plus before 9.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    3.5  Low  2017-04-27  2017-04-21  View
85316  CVE-2016-4875  Multiple cross-site scripting (XSS) vulnerabilities in the IVYWE (1) Assist plugin before 1.1.2.test20160906, (2) dataBox plugin before 0.0.0.20160906, and (3) userBox plugin before 0.0.0.20160906 for Geeklog allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2017-04-27  2017-04-21  View

Page 609 of 17672, showing 5 records out of 88360 total, starting on record 3041, ending on 3045

Actions