• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors
Home » CVE’s

CVE’s


CVE
Vendors
Products
Updated
CVSS v2
CVSS v3
CVE-2018-1557
2019-10-09
N/A
5.4 MEDIUM
IBM Rational Quality Manager (RQM) 5.0 through 5.02 and 6.0 through 6.0.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 142955.
CVE-2018-15569
2018-10-12
N/A
6.5 MEDIUM
my little forum 2.4.12 allows CSRF for deletion of users.
CVE-2018-15568
2018-11-01
N/A
8.8 HIGH
tp5cms through 2017-05-25 has CSRF via admin.php/category/delete.html.
CVE-2018-15567
2018-10-19
N/A
6.1 MEDIUM
CMSUno before 1.5.3 has XSS via the title field.
CVE-2018-15566
2018-10-12
N/A
6.1 MEDIUM
tp5cms through 2017-05-25 has XSS via the admin.php/article/index.html q parameter.
CVE-2018-15565
2018-10-12
N/A
8.8 HIGH
An issue was discovered in daveismyname simple-cms through 2014-03-11. admin/addpage.php does not require authentication for adding a page. This can also be exploited via CSRF.
CVE-2018-15564
2018-10-12
N/A
8.8 HIGH
An issue was discovered in daveismyname simple-cms through 2014-03-11. There is a CSRF vulnerability that can delete any page via admin/?delpage=8.
CVE-2018-15563
2018-11-08
N/A
6.1 MEDIUM
_core/admin/pages/add/ in Subrion CMS 4.2.1 has XSS via the titles[en] parameter.
CVE-2018-15562
2018-11-05
N/A
6.1 MEDIUM
CMS ISWEB 3.5.3 has XSS via the ordineRis, sezioneRicerca, or oggettiRicerca parameter to index.php.
CVE-2018-15560
2019-11-05
N/A
7.5 HIGH
PyCryptodome before 3.6.6 has an integer overflow in the data_len variable in AESNI.c, related to the AESNI_encrypt and AESNI_decrypt functions, leading to the mishandling of messages shorter than 16 bytes.
« Previous 1 … 2,432 2,433 2,434 2,435 2,436 … 11,258 Next »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE