NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 27996 | CVE-2015-7386 | Multiple cross-site scripting (XSS) vulnerabilities in includes/metaboxes.php in the Gallery - Photo Albums - Portfolio plugin 1.3.47 for WordPress allow remote authenticated users to inject arbitrary web script or HTML via the (1) Media Title or (2) Media Subtitle fields. | 2 | 3.5 | Low | 2017-01-19 | 2015-09-29 | View | |
| 35420 | CVE-2014-8330 | Cross-site scripting (XSS) vulnerability in EspoCRM allows remote authenticated users to inject arbitrary web script or HTML via the Name field in a new account. | 2 | 3.5 | Low | 2017-01-19 | 2014-10-22 | View | |
| 36188 | CVE-2014-9498 | Cross-site scripting (XSS) vulnerability in the Webform Invitation module 7.x-1.x before 7.x-1.3 and 7.x-2.x before 7.x-2.4 for Drupal allows remote authenticated users with the Webform: Create new content, Webform: Edit own content, or Webform: Edit any content permission to inject arbitrary web script or HTML via a node title. | 2 | 3.5 | Low | 2017-01-19 | 2015-01-12 | View | |
| 37212 | CVE-2013-0944 | The web-based file-restore interface in EMC Avamar Server before 6.1.0 allows remote authenticated users to read arbitrary files via a crafted URL. | 2 | 3.5 | Low | 2017-01-18 | 2013-05-03 | View | |
| 44124 | CVE-2012-2309 | Cross-site scripting (XSS) vulnerability in the Glossify Internal Links Auto SEO module for Drupal 6.x-2.5 and earlier allows remote authenticated users with certain roles to inject arbitrary web script or HTML via unspecified vectors. | 2 | 3.5 | Low | 2017-01-19 | 2012-07-30 | View |
Page 2637 of 17672, showing 5 records out of 88360 total, starting on record 13181, ending on 13185