NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
25080  CVE-2015-3178  Cross-site scripting (XSS) vulnerability in the external_format_text function in lib/externallib.php in Moodle through 2.5.9, 2.6.x before 2.6.11, 2.7.x before 2.7.8, and 2.8.x before 2.8.6 allows remote authenticated users to inject arbitrary web script or HTML into an external application via a crafted string that is visible to web services.    3.5  Low  2017-01-19  2016-12-30  View
29688  CVE-2014-0840  Multiple cross-site scripting (XSS) vulnerabilities in IBM Rational Focal Point 6.4.x and 6.5.x before 6.5.2.3 and 6.6.x before 6.6.1 allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.    3.5  Low  2017-01-19  2016-08-18  View
31736  CVE-2014-3559  The oVirt storage backend in Red Hat Enterprise Virtualization 3.4 does not wipe memory snapshots when deleting a VM, even when wipe-after-delete (WAD) is configured for the VM"s disk, which allows remote authenticated users with certain credentials to read portions of the deleted VM"s memory and obtain sensitive information via an uninitialized storage volume.    3.5  Low  2017-01-19  2017-01-06  View
41208  CVE-2013-6003  CRLF injection vulnerability in Cybozu Garoon 3.1 through 3.5 SP5, when Phone Messages forwarding is enabled, allows remote authenticated users to inject arbitrary e-mail headers via unspecified vectors.    3.5  Low  2017-01-18  2014-01-03  View
81913  CVE-2016-8934  IBM WebSphere Application Server is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.    3.5  Low  2017-02-15  2017-02-09  View

Page 15136 of 17672, showing 5 records out of 88360 total, starting on record 75676, ending on 75680

Actions