NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
17102  CVE-2016-0712  Cross-site scripting (XSS) vulnerability in Apache Jetspeed before 2.3.1 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to portal.    4.3  Medium  2017-01-19  2016-04-20  View
18437  CVE-2016-2163  Cross-site scripting (XSS) vulnerability in Apache OpenMeetings before 3.1.1 allows remote attackers to inject arbitrary web script or HTML via the event description when creating an event.    4.3  Medium  2017-01-19  2016-04-14  View
6610  CVE-2008-6879  Cross-site scripting (XSS) vulnerability in Apache Roller 2.3, 3.0, 3.1, and 4.0 allows remote attackers to inject arbitrary web script or HTML via the q parameter in a search action.    4.3  Medium  2017-01-03  2009-07-31  View
69383  CVE-2005-3745  Cross-site scripting (XSS) vulnerability in Apache Struts 1.2.7, and possibly other versions allows remote attackers to inject arbitrary web script or HTML via the query string, which is not properly quoted or filtered when the request handler generates an error message.    4.3  Medium  2017-01-03  2011-03-07  View
1961  CVE-2008-2025  Cross-site scripting (XSS) vulnerability in Apache Struts before 1.2.9-162.31.1 on SUSE Linux Enterprise (SLE) 11, before 1.2.9-108.2 on SUSE openSUSE 10.3, before 1.2.9-198.2 on SUSE openSUSE 11.0, and before 1.2.9-162.163.2 on SUSE openSUSE 11.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to "insufficient quoting of parameters."    4.3  Medium  2017-01-03  2009-04-18  View

Page 2995 of 17672, showing 5 records out of 88360 total, starting on record 14971, ending on 14975

Actions