NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
55962  CVE-2007-3818  Cross-site scripting (XSS) vulnerability in the LoginToboggan module 5.x-1.x-dev before 20070712 for Drupal allows remote authenticated users with "administer blocks" permission to inject arbitrary JavaScript and gain privileges via "the message displayed above the default user login block."    3.5  Low  2017-01-07  2012-10-30  View
69787  CVE-2005-4189  Multiple cross-site scripting (XSS) vulnerabilities in Horde Kronolith H3 before 2.0.6 allow remote authenticated users to inject arbitrary web script or HTML via (1) the Calendar name field when creating calendars, (2) event title field when deleting events, the (3) Category and (4) Location search fields, and the (5) attendees email address fields when editing event attendees, and possibly other vectors.    3.5  Low  2017-01-03  2011-03-07  View
9883  CVE-2011-3199  Multiple cross-site scripting (XSS) vulnerabilities in Domain Technologie Control (DTC) before 0.34.1 allow remote authenticated users to inject arbitrary web script or HTML via the (1) message body of a support ticket or unspecified vectors to the (2) DNS and (3) MX form, as demonstrated by the "Domain root TXT record:" field.    3.5  Low  2017-01-07  2014-03-27  View
17051  CVE-2016-0657  Unspecified vulnerability in Oracle MySQL 5.7.11 and earlier allows local users to affect confidentiality via vectors related to JSON.    3.5  Low  2017-01-19  2016-12-02  View
83867  CVE-2017-7298  In Moodle 3.2.2+, there is XSS in the Course summary filter of the Add a new course page, as demonstrated by a crafted attribute of an SVG element.    3.5  Low  2017-04-27  2017-03-30  View

Page 15020 of 17672, showing 5 records out of 88360 total, starting on record 75096, ending on 75100

Actions