NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 14225 | CVE-2010-2790 | Multiple cross-site scripting (XSS) vulnerabilities in the formatQuery function in frontends/php/include/classes/class.curl.php in Zabbix before 1.8.3rc1 allow remote attackers to inject arbitrary web script or HTML via the (1) filter_set, (2) show_details, (3) filter_rst, or (4) txt_select parameters to the triggers page (tr_status.php). NOTE: some of these details are obtained from third party information. | 2 | 4.3 | Medium | 2017-01-18 | 2010-08-05 | View | |
| 14224 | CVE-2010-2789 | PHP remote file inclusion vulnerability in MediaWikiParserTest.php in MediaWiki 1.16 beta, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via unspecified vectors. | 2 | 6.8 | Medium | 2017-01-18 | 2011-07-19 | View | |
| 14223 | CVE-2010-2788 | Cross-site scripting (XSS) vulnerability in profileinfo.php in MediaWiki before 1.15.5, when wgEnableProfileInfo is enabled, allows remote attackers to inject arbitrary web script or HTML via the filter parameter. | 2 | 2.6 | Low | 2017-01-18 | 2011-09-06 | View | |
| 14222 | CVE-2010-2787 | api.php in MediaWiki before 1.15.5 does not prevent use of public caching headers for private data, which allows remote attackers to bypass intended access restrictions and obtain sensitive information by retrieving documents from an HTTP proxy cache that has been used by a victim. | 2 | 4.3 | Medium | 2017-01-18 | 2011-09-06 | View | |
| 14221 | CVE-2010-2786 | Directory traversal vulnerability in Piwik 0.6 through 0.6.3 allows remote attackers to include arbitrary local files and possibly have unspecified other impact via directory traversal sequences in a crafted data-renderer request. | 2 | 6.8 | Medium | 2017-01-18 | 2010-08-03 | View |
Page 14828 of 17672, showing 5 records out of 88360 total, starting on record 74136, ending on 74140