NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
46674  CVE-2012-5551  Multiple cross-site scripting (XSS) vulnerabilities in the MailChimp module 7.x-2.x before 7.x-2.7 for Drupal allow remote attackers to inject arbitrary web script or HTML via vectors related to (1) a predictable "webhook URL key" and (2) improper sanitization of "Webhook variables from POST requests."    4.3  Medium  2017-01-19  2013-02-25  View
47186  CVE-2012-6505  Cross-site scripting (XSS) vulnerability in mods/hours/data/get_hours.php in PHP Volunteer Management 1.0.2 allows remote attackers to inject arbitrary web script or HTML via the id parameter.    4.3  Medium  2017-01-19  2013-01-29  View
47698  CVE-2009-0366  The uncompress_buffer function in src/server/simple_wml.cpp in Wesnoth before r33069 allows remote attackers to cause a denial of service via a large compressed WML document.    4.3  Medium  2017-01-07  2009-03-21  View
48722  CVE-2009-1446  Unrestricted file upload vulnerability in upload.php in Elkagroup Image Gallery 1.0 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in gallery/pictures/. NOTE: some of these details are obtained from third party information.    6.5  Medium  2017-01-07  2009-05-14  View
49490  CVE-2009-2228  Cross-site scripting (XSS) vulnerability in engine.php in Kasseler CMS allows remote attackers to inject arbitrary web script or HTML via the url parameter in a redirect action.    4.3  Medium  2017-01-07  2009-06-29  View

Page 2965 of 17672, showing 5 records out of 88360 total, starting on record 14821, ending on 14825

Actions