NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
38637 | CVE-2013-2695 | Cross-site scripting (XSS) vulnerability in invite.php in the WP Symposium plugin before 13.04 for WordPress allows remote attackers to inject arbitrary web script or HTML via the u parameter. | 2 | 4.3 | Medium | 2017-01-18 | 2014-03-31 | View | |
39405 | CVE-2013-3648 | Cross-site scripting (XSS) vulnerability in KENT-WEB POST-MAIL before 6.7, when Internet Explorer 7 or earlier is used, allows remote attackers to inject arbitrary web script or HTML via an unspecified form field. | 2 | 4.3 | Medium | 2017-01-18 | 2013-10-11 | View | |
39661 | CVE-2013-3961 | SQL injection vulnerability in edit_event.php in Simple PHP Agenda before 2.2.9 allows remote authenticated users to execute arbitrary SQL commands via the eventid parameter. | 2 | 6.5 | Medium | 2017-01-18 | 2016-09-21 | View | |
40173 | CVE-2013-4589 | The ExportAlphaQuantumType function in export.c in GraphicsMagick before 1.3.18 might allow remote attackers to cause a denial of service (crash) via vectors related to exporting the alpha of an 8-bit RGBA image. | 2 | 4.3 | Medium | 2017-01-18 | 2016-08-26 | View | |
41197 | CVE-2013-5992 | Cross-site scripting (XSS) vulnerability in the displaySystemError function in html/handle_error.php in LOCKON EC-CUBE 2.11.0 through 2.11.5 allows remote attackers to inject arbitrary web script or HTML by leveraging incorrect handling of error-message output. | 2 | 4.3 | Medium | 2017-01-18 | 2013-11-21 | View |
Page 17010 of 17672, showing 5 records out of 88360 total, starting on record 85046, ending on 85050