NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
27996  CVE-2015-7386  Multiple cross-site scripting (XSS) vulnerabilities in includes/metaboxes.php in the Gallery - Photo Albums - Portfolio plugin 1.3.47 for WordPress allow remote authenticated users to inject arbitrary web script or HTML via the (1) Media Title or (2) Media Subtitle fields.    3.5  Low  2017-01-19  2015-09-29  View
35420  CVE-2014-8330  Cross-site scripting (XSS) vulnerability in EspoCRM allows remote authenticated users to inject arbitrary web script or HTML via the Name field in a new account.    3.5  Low  2017-01-19  2014-10-22  View
36188  CVE-2014-9498  Cross-site scripting (XSS) vulnerability in the Webform Invitation module 7.x-1.x before 7.x-1.3 and 7.x-2.x before 7.x-2.4 for Drupal allows remote authenticated users with the Webform: Create new content, Webform: Edit own content, or Webform: Edit any content permission to inject arbitrary web script or HTML via a node title.    3.5  Low  2017-01-19  2015-01-12  View
37212  CVE-2013-0944  The web-based file-restore interface in EMC Avamar Server before 6.1.0 allows remote authenticated users to read arbitrary files via a crafted URL.    3.5  Low  2017-01-18  2013-05-03  View
44124  CVE-2012-2309  Cross-site scripting (XSS) vulnerability in the Glossify Internal Links Auto SEO module for Drupal 6.x-2.5 and earlier allows remote authenticated users with certain roles to inject arbitrary web script or HTML via unspecified vectors.    3.5  Low  2017-01-19  2012-07-30  View

Page 2637 of 17672, showing 5 records out of 88360 total, starting on record 13181, ending on 13185

Actions