Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

14,642 results · Page 277/293
4.8
CVE-2017-17778

Paid To Read Script 2.0.5 has XSS via the referrals.php tier parameter or the admin/userview.php uid parameter.

4.8
CVE-2017-17825

The Batch Manager component of Piwigo 2.9.2 is vulnerable to Persistent Cross Site Scripting via tags-* array parameters

4.8
CVE-2017-17828

Bus Booking Script has XSS via the results.php datepicker parameter or the admin/new_master.php spemail parameter.

4.8
CVE-2017-17909

PHP Scripts Mall Responsive Realestate Script has XSS via the admin/general.php gplus parameter.

4.8
CVE-2017-17925

PHP Scripts Mall Professional Service Script has XSS via the admin/general_settingupd.php website_title parameter.

4.8
CVE-2017-17929

PHP Scripts Mall Professional Service Script has XSS via the admin/bannerview.php view parameter.

4.8
CVE-2017-16768

Cross-site scripting (XSS) vulnerability in User Policy editor in Synology MailPlus Server before 1.4.0-0415 allows remo

4.8
CVE-2017-17938

PHP Scripts Mall Single Theater Booking has XSS via the admin/viewtheatre.php theatreid parameter.

4.8
CVE-2017-17940

PHP Scripts Mall Single Theater Booking has XSS via the title parameter to admin/sitesettings.php.

4.8
CVE-2017-17984

PHP Scripts Mall Muslim Matrimonial Script has XSS via the admin/event_edit.php edit_id parameter.

4.8
CVE-2017-17985

PHP Scripts Mall Muslim Matrimonial Script has XSS via the admin/state_view.php cou_id parameter.

4.8
CVE-2017-17986

PHP Scripts Mall Muslim Matrimonial Script has XSS via the admin/caste_view.php comm_id parameter.

4.8
CVE-2017-17988

PHP Scripts Mall Muslim Matrimonial Script has XSS via the admin/event_add.php event_title parameter.

4.8
CVE-2017-17089

custom/run.cgi in Webmin before 1.870 allows remote authenticated administrators to conduct XSS attacks via the descript

4.7
CVE-2016-6756

An information disclosure vulnerability in Qualcomm components including the camera driver and video driver could enable

4.7
CVE-2016-6757

An information disclosure vulnerability in Qualcomm components including the camera driver and video driver could enable

4.7
CVE-2016-6774

An information disclosure vulnerability in Package Manager could enable a local malicious application to bypass operatin

4.7
CVE-2016-8395

A denial of service vulnerability in the NVIDIA camera driver could enable an attacker to cause a local permanent denial

4.7
CVE-2016-8401

An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and network

4.7
CVE-2016-8402

An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and network

4.7
CVE-2016-8403

An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and network

4.7
CVE-2016-8404

An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and network

4.7
CVE-2016-8405

An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and network

4.7
CVE-2016-8406

An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and network

4.7
CVE-2016-8407

An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and network

4.7
CVE-2016-8408

An information disclosure vulnerability in the NVIDIA video driver could enable a local malicious application to access

4.7
CVE-2016-8409

An information disclosure vulnerability in the NVIDIA video driver could enable a local malicious application to access

4.7
CVE-2016-8410

An information disclosure vulnerability in the Qualcomm sound driver could enable a local malicious application to acces

4.7
CVE-2016-8469

An information disclosure vulnerability in the camera driver could enable a local malicious application to access data o

4.7
CVE-2016-8470

An information disclosure vulnerability in the MediaTek driver could enable a local malicious application to access data

4.7
CVE-2016-8471

An information disclosure vulnerability in the MediaTek driver could enable a local malicious application to access data

4.7
CVE-2016-8472

An information disclosure vulnerability in the MediaTek driver could enable a local malicious application to access data

4.7
CVE-2016-8473

An information disclosure vulnerability in the STMicroelectronics driver could enable a local malicious application to a

4.7
CVE-2016-8474

An information disclosure vulnerability in the STMicroelectronics driver could enable a local malicious application to a

4.7
CVE-2016-8475

An information disclosure vulnerability in the HTC input driver could enable a local malicious application to access dat

4.7
CVE-2016-9811

The windows_icon_typefind function in gst-plugins-base in GStreamer before 1.10.2, when G_SLICE is set to always-malloc,

4.7
CVE-2017-3803

A vulnerability in the Cisco IOS Software forwarding queue of Cisco 2960X and 3750X switches could allow an unauthentica

4.7
CVE-2016-1919

Samsung KNOX 1.0 uses a weak eCryptFS Key generation algorithm, which makes it easier for local users to obtain sensitiv

4.7
CVE-2017-3236

Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent

4.7
CVE-2017-3245

Vulnerability in the Oracle FLEXCUBE Direct Banking component of Oracle Financial Services Applications (subcomponent: P

4.7
CVE-2017-3280

Vulnerability in the Oracle Partner Management component of Oracle E-Business Suite (subcomponent: User Interface). Supp

4.7
CVE-2017-3281

Vulnerability in the Oracle Partner Management component of Oracle E-Business Suite (subcomponent: User Interface). Supp

4.7
CVE-2017-3282

Vulnerability in the Oracle Partner Management component of Oracle E-Business Suite (subcomponent: User Interface). Supp

4.7
CVE-2017-3283

Vulnerability in the Oracle Partner Management component of Oracle E-Business Suite (subcomponent: User Interface). Supp

4.7
CVE-2017-3313

Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: MyISAM). Supported versions that are

4.7
CVE-2016-8414

An information disclosure vulnerability in the Qualcomm Secure Execution Environment Communicator could enable a local m

4.7
CVE-2017-0451

An information disclosure vulnerability in the Qualcomm sound driver could enable a local malicious application to acces

4.7
CVE-2015-7493

IBM InfoSphere Information Server could allow a local user under special circumstances to execute commands during instal

4.7
CVE-2016-5918

IBM Tivoli Storage Manager HSM for Windows displays the encrypted Tivoli Storage Manager password in application trace o

4.7
CVE-2016-7111

MantisBT before 1.3.1 and 2.x before 2.0.0-beta.2 uses a weak Content Security Policy when using the Gravatar plugin, wh

Scan for 2017 Vulnerabilities

CyberStrike detects these CVEs across your infrastructure automatically.

Get Started