NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 26662 | CVE-2015-5529 | Multiple cross-site scripting (XSS) vulnerabilities in Free Reprintables ArticleFR 3.0.6 allow remote attackers to inject arbitrary web script or HTML via the (1) name parameter to dashboard/settings/categories/, (2) title or (3) rel parameter to dashboard/settings/links/, or (4) url parameter to dashboard/tools/pingservers/. | 2 | 4.3 | Medium | 2017-01-19 | 2015-07-21 | View | |
| 26663 | CVE-2015-5530 | Multiple cross-site request forgery (CSRF) vulnerabilities in Free Reprintables ArticleFR 3.0.6 allow remote attackers to hijack the authentication of administrators for requests that add an administrator account via a request to dashboard/users/create/. | 2 | 6.8 | Medium | 2017-01-19 | 2015-07-21 | View | |
| 26664 | CVE-2015-5531 | Directory traversal vulnerability in Elasticsearch before 1.6.1 allows remote attackers to read arbitrary files via unspecified vectors related to snapshot API calls. | 2 | 5 | Medium | 2017-01-19 | 2016-12-07 | View | |
| 26665 | CVE-2015-5534 | Multiple cross-site request forgery (CSRF) vulnerabilities in Oxwall before 1.8 allow remote attackers to hijack the authentication of administrators for requests that (1) put the website under maintenance via the maintenance_enable parameter or (2) conduct cross-site scripting (XSS) attacks via the maintenance_text parameter to admin/pages/maintenance. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-07 | View | |
| 26666 | CVE-2015-5535 | Cross-site scripting (XSS) vulnerability in the qTranslate plugin 2.5.39 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the edit parameter in the qtranslate page to wp-admin/options-general.php. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-21 | View |
Page 14652 of 17672, showing 5 records out of 88360 total, starting on record 73256, ending on 73260