NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 13715 | CVE-2010-2233 | tif_getimage.c in LibTIFF 3.9.0 and 3.9.2 on 64-bit platforms, as used in ImageMagick, does not properly perform vertical flips, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted TIFF image, related to "downsampled OJPEG input." | 2 | 7.5 | High | 2017-01-18 | 2013-05-14 | View | |
| 13714 | CVE-2010-2231 | Cross-site request forgery (CSRF) vulnerability in report/overview/report.php in the quiz module in Moodle before 1.8.13 and 1.9.x before 1.9.9 allows remote attackers to hijack the authentication of arbitrary users for requests that delete quiz attempts via the attemptid parameter. | 2 | 6.8 | Medium | 2017-01-18 | 2010-09-09 | View | |
| 13713 | CVE-2010-2230 | The KSES text cleaning filter in lib/weblib.php in Moodle before 1.8.13 and 1.9.x before 1.9.9 does not properly handle vbscript URIs, which allows remote authenticated users to conduct cross-site scripting (XSS) attacks via HTML input. | 2 | 4 | Medium | 2017-01-18 | 2010-09-09 | View | |
| 13712 | CVE-2010-2229 | Multiple cross-site scripting (XSS) vulnerabilities in blog/index.php in Moodle before 1.8.13 and 1.9.x before 1.9.9 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters. | 2 | 4.3 | Medium | 2017-01-18 | 2010-09-09 | View | |
| 13711 | CVE-2010-2228 | Cross-site scripting (XSS) vulnerability in the MNET access-control interface in Moodle before 1.8.13 and 1.9.x before 1.9.9 allows remote attackers to inject arbitrary web script or HTML via vectors involving extended characters in a username. | 2 | 4.3 | Medium | 2017-01-18 | 2010-09-09 | View |
Page 14930 of 17672, showing 5 records out of 88360 total, starting on record 74646, ending on 74650