NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 27637 | CVE-2015-6810 | Cross-site scripting (XSS) vulnerability in Invision Power Services IPS Community Suite (aka Invision Power Board, IPB, or Power Board) 4.x before 4.0.12.1 allows remote authenticated users to inject arbitrary web script or HTML via the event_location[address] array parameter to calendar/submit/. | 2 | 3.5 | Low | 2017-01-19 | 2015-09-04 | View | |
| 42229 | CVE-2012-0086 | Unspecified vulnerability in the Oracle Imaging and Process Management component in Oracle Fusion Middleware 10.1.3.6.0 allows remote authenticated users to affect confidentiality via unknown vectors related to Web, a different vulnerability than CVE-2012-0095 and CVE-2012-0108. | 2 | 3.5 | Low | 2017-01-19 | 2016-11-22 | View | |
| 45813 | CVE-2012-4422 | wp-admin/plugins.php in WordPress before 3.4.2, when the multisite feature is enabled, does not check for network-administrator privileges before performing a network-wide activation of an installed plugin, which might allow remote authenticated users to make unintended plugin changes by leveraging the Administrator role. | 2 | 3.5 | Low | 2017-01-19 | 2012-09-17 | View | |
| 19702 | CVE-2016-3971 | Cross-site scripting (XSS) vulnerability in lucene_search.jsp in dotCMS before 3.5.1 allows remote attackers to inject arbitrary web script or HTML via the query parameter to c/portal/layout. | 2 | 3.5 | Low | 2017-01-19 | 2016-12-15 | View | |
| 20982 | CVE-2016-5850 | Cross-site scripting (XSS) vulnerability in the volume backup service module in Huawei Public Cloud Solution before 1.0.5 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors. | 2 | 3.5 | Low | 2017-01-19 | 2016-07-14 | View |
Page 15133 of 17672, showing 5 records out of 88360 total, starting on record 75661, ending on 75665