| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Reflected XSS in wordpress plugin pondol-formmail v1.1 |
| Reflected XSS in wordpress plugin recipes-writer v1.0.4 |
| Reflected XSS in wordpress plugin s3-video v0.983 |
| Reflected XSS in wordpress plugin simpel-reserveren v3.5.2 |
| Reflected XSS in wordpress plugin simplified-content v1.0.0 |
| Reflected XSS in wordpress plugin tera-charts v1.0 |
| Reflected XSS in wordpress plugin tidio-form v1.0 |
| Reflected XSS in wordpress plugin tidio-gallery v1.1 |
| Reflected XSS in wordpress plugin whizz v1.0.7 |
| Reflected XSS in wordpress plugin wpsolr-search-engine v7.6 |
| Mailcwp remote file upload vulnerability incomplete fix v1.100 |
| Ruckus Wireless H500 web management interface CSRF |
| Ruckus Wireless H500 web management interface authentication bypass |
| Ruckus Wireless H500 web management interface denial of service |
| Ruckus Wireless H500 web management interface authenticated command injection |
| Zotpress plugin for WordPress SQLi in zp_get_account() |
| Webdynpro in SAP Solman 7.1 through 7.31 allows remote attackers to obtain sensitive information via webdynpro/dispatcher/sap.com/caf~eu~gp~example~timeoff~wd requests, aka SAP Security Note 2344524. |
| In OWASP AntiSamy before 1.5.5, by submitting a specially crafted input (a tag that supports style with active content), you could bypass the library protections and supply executable code. The impact is XSS. |
| Heap-based buffer overflow in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allows attackers to execute arbitrary code via unspecified vectors. |
| Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0960, CVE-2016-0961, CVE-2016-0962, CVE-2016-0986, CVE-2016-0989, CVE-2016-0992, and CVE-2016-1005. |