NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 17102 | CVE-2016-0712 | Cross-site scripting (XSS) vulnerability in Apache Jetspeed before 2.3.1 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to portal. | 2 | 4.3 | Medium | 2017-01-19 | 2016-04-20 | View | |
| 18437 | CVE-2016-2163 | Cross-site scripting (XSS) vulnerability in Apache OpenMeetings before 3.1.1 allows remote attackers to inject arbitrary web script or HTML via the event description when creating an event. | 2 | 4.3 | Medium | 2017-01-19 | 2016-04-14 | View | |
| 6610 | CVE-2008-6879 | Cross-site scripting (XSS) vulnerability in Apache Roller 2.3, 3.0, 3.1, and 4.0 allows remote attackers to inject arbitrary web script or HTML via the q parameter in a search action. | 2 | 4.3 | Medium | 2017-01-03 | 2009-07-31 | View | |
| 69383 | CVE-2005-3745 | Cross-site scripting (XSS) vulnerability in Apache Struts 1.2.7, and possibly other versions allows remote attackers to inject arbitrary web script or HTML via the query string, which is not properly quoted or filtered when the request handler generates an error message. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 1961 | CVE-2008-2025 | Cross-site scripting (XSS) vulnerability in Apache Struts before 1.2.9-162.31.1 on SUSE Linux Enterprise (SLE) 11, before 1.2.9-108.2 on SUSE openSUSE 10.3, before 1.2.9-198.2 on SUSE openSUSE 11.0, and before 1.2.9-162.163.2 on SUSE openSUSE 11.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to "insufficient quoting of parameters." | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-18 | View |
Page 2995 of 17672, showing 5 records out of 88360 total, starting on record 14971, ending on 14975