NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 48134 | CVE-2009-0817 | Cross-site scripting (XSS) vulnerability in the Protected Node module 5.x before 5.x-1.4 and 6.x before 6.x-1.5, a module for Drupal, allows remote authenticated users with "administer site configuration" permissions to inject arbitrary web script or HTML via the Password page info field, which is not properly handled by the protected_node_enterpassword function in protected_node.module. | 2 | 3.5 | Low | 2017-01-07 | 2009-06-17 | View | |
| 81927 | CVE-2016-8999 | IBM InfoSphere Information Server contains a Path-relative stylesheet import vulnerability that allows attackers to render a page in quirks mode thereby facilitating an attacker to inject malicious CSS. | 2 | 3.5 | Low | 2017-02-15 | 2017-02-13 | View | |
| 88327 | CVE-2016-9988 | IBM Jazz Foundation Reporting Service (JRS) 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 120554. | 2 | 3.5 | Low | 2017-07-18 | 2017-07-12 | View | |
| 24583 | CVE-2015-2559 | Drupal 6.x before 6.35 and 7.x before 7.35 allows remote authenticated users to reset the password of other accounts by leveraging an account with the same password hash as another account and a crafted password reset URL. | 2 | 3.5 | Low | 2017-01-19 | 2016-08-24 | View | |
| 26119 | CVE-2015-4797 | Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.3 allows remote authenticated users to affect integrity via unknown vectors related to Security. | 2 | 3.5 | Low | 2017-01-19 | 2016-12-23 | View |
Page 2536 of 17672, showing 5 records out of 88360 total, starting on record 12676, ending on 12680