NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5979 | CVE-2008-6248 | Cross-site scripting (XSS) vulnerability in all.php in Galatolo WebManager 1.3a and earlier allows remote attackers to inject arbitrary web script or HTML via the tag parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-07-23 | View | |
| 41670 | CVE-2013-6786 | Cross-site scripting (XSS) vulnerability in Allegro RomPager before 4.51, as used on the ZyXEL P660HW-D1, Huawei MT882, Sitecom WL-174, TP-LINK TD-8816, and D-Link DSL-2640R and DSL-2641R, when the "forbidden author header" protection mechanism is bypassed, allows remote attackers to inject arbitrary web script or HTML by requesting a nonexistent URI in conjunction with a crafted HTTP Referer header that is not properly handled in a 404 page. NOTE: there is no CVE for a "URL redirection" issue that some sources list separately. | 2 | 4.3 | Medium | 2017-01-18 | 2014-01-17 | View | |
| 86486 | CVE-2017-9249 | Cross-site scripting (XSS) vulnerability in Allen Disk 1.6 allows remote authenticated users to inject arbitrary web script or HTML persistently by uploading a crafted HTML file. The attack vector is the content of this file, and the filename must be specified in the PATH_INFO to readfile.php. | 2 | 3.5 | Low | 2017-06-12 | 2017-06-06 | View | |
| 60464 | CVE-2006-1759 | Cross-site scripting (XSS) vulnerability in allgemein_transfer.php in SWSoft Confixx 3.1.2 allows remote attackers to inject arbitrary web script or HTML via the jahr parameter. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View | |
| 54888 | CVE-2007-2724 | Cross-site scripting (XSS) vulnerability in all_photos.html in fotolog allows remote attackers to inject arbitrary web script or HTML via the user parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View |
Page 2987 of 17672, showing 5 records out of 88360 total, starting on record 14931, ending on 14935