NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83828  CVE-2017-7215  Cross site scripting in some view elements in the index filter tool in app/webroot/js/misp2.4.68.js and the organisation landing page in app/View/Organisations/ajax/landingpage.ctp of MISP before 2.4.69 allows remote attackers to inject arbitrary web script or HTML.    4.3  Medium  2017-04-27  2017-04-07  View
86672  CVE-2017-9420  Cross site scripting (XSS) vulnerability in the Spiffy Calendar plugin before 3.3.0 for WordPress allows remote attackers to inject arbitrary JavaScript via the yr parameter.    4.3  Medium  2017-07-18  2017-07-17  View
86693  CVE-2017-9451  Cross site scripting (XSS) vulnerability in pages.edit_form.php in flatCore 1.4.6 allows remote attackers to inject arbitrary JavaScript via the PATH_INFO in an acp.php URL, due to use of unsanitized $_SERVER['PHP_SELF'] to generate URLs.    4.3  Medium  2017-06-17  2017-06-13  View
87358  CVE-2017-3948  Cross Site Scripting (XSS) in IMG Tags in the ePO extension in McAfee Data Loss Prevention Endpoint (DLP Endpoint) 10.0.x allows authenticated users to inject arbitrary web script or HTML via injecting malicious JavaScript into a user's browsing session.    3.5  Low  2017-07-18  2017-07-05  View
86723  CVE-2012-6705  Cross Site Scripting (XSS) exists in Jamroom before 4.2.7 via the Status Update field.    4.3  Medium  2017-06-12  2017-06-09  View

Page 14934 of 17672, showing 5 records out of 88360 total, starting on record 74666, ending on 74670

Actions