NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83555 | CVE-2014-9645 | The add_probe function in modutils/modprobe.c in BusyBox before 1.23.0 allows local users to bypass intended restrictions on loading kernel modules via a / (slash) character in a module name, as demonstrated by an "ifconfig /usbserial up" command or a "mount -t /snd_pcm none /" command. | 2 | 2.1 | Low | 2017-03-18 | 2017-03-14 | View | |
83554 | CVE-2014-8723 | GetSimple CMS 3.3.4 allows remote attackers to obtain sensitive information via a direct request to (1) plugins/anonymous_data.php or (2) plugins/InnovationPlugin.php, which reveals the installation path in an error message. | 2017-03-18 | 2017-03-17 | View | ||||
83553 | CVE-2014-8722 | GetSimple CMS 3.3.4 allows remote attackers to obtain sensitive information via a direct request to (1) data/users/<username>.xml, (2) backups/users/<username>.xml.bak, (3) data/other/authorization.xml, or (4) data/other/appid.xml. | 2017-03-18 | 2017-03-17 | View | ||||
83552 | CVE-2014-8708 | Pluck CMS 4.7.2 allows remote attackers to execute arbitrary code via the blog form feature. | 2017-03-18 | 2017-03-17 | View | ||||
83551 | CVE-2014-8707 | Cross-site scripting (XSS) vulnerability in TinyMCE in Pluck CMS 4.7.2 allows remote authenticated users to inject arbitrary web script or HTML via the "edit HTML source" option. | 2017-03-18 | 2017-03-17 | View |
Page 962 of 17672, showing 5 records out of 88360 total, starting on record 4806, ending on 4810