NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 16060 | CVE-2010-4825 | Cross-site scripting (XSS) vulnerability in magpie_debug.php in the Twitter Feed plugin (wp-twitter-feed) 0.3.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the url parameter. | 2 | 4.3 | Medium | 2017-01-18 | 2011-08-25 | View | |
| 16059 | CVE-2010-4824 | SQL injection vulnerability in the augmentSQL method in core/model/Translatable.php in SilverStripe 2.3.x before 2.3.10 and 2.4.x before 2.4.4, when the Translatable extension is enabled, allows remote attackers to execute arbitrary SQL commands via the locale parameter. | 2 | 6.8 | Medium | 2017-01-18 | 2012-10-15 | View | |
| 16058 | CVE-2010-4823 | Cross-site scripting (XSS) vulnerability in the httpError method in sapphire/core/control/RequestHandler.php in SilverStripe 2.3.x before 2.3.10 and 2.4.x before 2.4.4, when custom error handling is not used, allows remote attackers to inject arbitrary web script or HTML via "missing URL actions." | 2 | 4.3 | Medium | 2017-01-18 | 2012-09-18 | View | |
| 16057 | CVE-2010-4822 | core/model/MySQLDatabase.php in SilverStripe 2.4.x before 2.4.4, when the site is running in "live mode," allows remote attackers to obtain the SQL queries for a page via the showqueries and ajax parameters. | 2 | 4.3 | Medium | 2017-01-18 | 2012-09-18 | View | |
| 16056 | CVE-2010-4821 | Cross-site scripting (XSS) vulnerability in phpMyFAQ before 2.6.9 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php. | 2 | 4.3 | Medium | 2017-01-18 | 2012-11-15 | View |
Page 14461 of 17672, showing 5 records out of 88360 total, starting on record 72301, ending on 72305