NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
26636  CVE-2015-5497  Cross-site scripting (XSS) vulnerability in the Web Links module 6.x-2.x before 6.x-2.6 and 7.x-1.x before 7.x-1.0 for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via unspecified vectors.    3.5  Low  2017-01-19  2015-08-19  View
26635  CVE-2015-5496  The pass2pdf module for Drupal does not restrict access to generated PDF files, which allows remote attackers to obtain user passwords via unspecified vectors.    Medium  2017-01-19  2016-11-28  View
26634  CVE-2015-5495  Cross-site scripting (XSS) vulnerability in the Mobile sliding menu module 7.x-2.x before 7.x-2.1 for Drupal allows remote authenticated users with the "administer menu" permission to inject arbitrary web script or HTML via unspecified vectors.    2.1  Low  2017-01-19  2015-08-19  View
26633  CVE-2015-5494  Cross-site scripting (XSS) vulnerability in the Webform Matrix Component module 7.x-4.x before 7.x-4.13 for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via unspecified vectors.    3.5  Low  2017-01-19  2015-08-19  View
26632  CVE-2015-5493  The Entityform Block module 7.x-1.x before 7.x-1.3 for Drupal does not properly check permissions when a form is locked to a role, which allows remote attackers to obtain access to certain entityforms via unspecified vectors.    Medium  2017-01-19  2015-08-19  View

Page 3027 of 17672, showing 5 records out of 88360 total, starting on record 15131, ending on 15135

Actions