NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
87602 | CVE-2017-1000065 | Multiple Cross-site scripting (XSS) vulnerabilities in rpc.php in OpenMediaVault release 2.1 in Access Rights Management(Users) functionality allows attackers to inject arbitrary web scripts and execute malicious scripts within an authenticated client's browser. | 2017-07-18 | 2017-07-17 | View | ||||
87858 | CVE-2017-11412 | Fiyo CMS 2.0.7 has SQL injection in dapur/apps/app_comment/controller/comment_status.php via $_GET['id']. | 2017-07-18 | 2017-07-18 | View | ||||
88114 | CVE-2017-8002 | EMC Data Protection Advisor prior to 6.4 contains multiple blind SQL injection vulnerabilities. A remote authenticated attacker may potentially exploit these vulnerabilities to gain information about the application by causing execution of arbitrary SQL commands. | 2 | 6.5 | Medium | 2017-07-18 | 2017-07-17 | View | |
23346 | CVE-2015-0924 | Ceragon FibeAir IP-10 bridges have a default password for the root account, which makes it easier for remote attackers to obtain access via a (1) HTTP, (2) SSH, (3) TELNET, or (4) CLI session. | 2 | 7.8 | High | 2017-05-27 | 2017-05-26 | View | |
66099 | CVE-2005-0336 | Cross-site scripting (XSS) vulnerability in EMotion MediaPartner Web Server 5.0 allows remote attackers to inject arbitrary HTML or web script, as demonstrated using a URL containing .. sequences and HTML, which results in a directory browsing page that does not properly filter the HTML. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 644 of 17672, showing 5 records out of 88360 total, starting on record 3216, ending on 3220