NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
259  CVE-2008-0274  Cross-site scripting (XSS) vulnerability in Drupal 4.7.x and 5.x, when certain .htaccess protections are disabled, allows remote attackers to inject arbitrary web script or HTML via crafted links involving theme .tpl.php files.    2.6  Low  2017-01-03  2011-03-07  View
5901  CVE-2008-6170  Cross-site scripting (XSS) vulnerability in Drupal 5.x before 5.12 and 6.x before 6.6 allows remote authenticated users with create book content or edit node book hierarchy permissions to inject arbitrary web script or HTML via the book page title.    3.5  Low  2017-01-03  2009-05-14  View
48844  CVE-2009-1575  Cross-site scripting (XSS) vulnerability in Drupal 5.x before 5.17 and 6.x before 6.11, as used in vbDrupal before 5.17.0, allows remote attackers to inject arbitrary web script or HTML via crafted UTF-8 byte sequences before the Content-Type meta tag, which are treated as UTF-7 by Internet Explorer 6 and 7.    4.3  Medium  2017-01-07  2009-05-20  View
1092  CVE-2008-1131  Cross-site scripting (XSS) vulnerability in Drupal 6.0 allows remote authenticated users to inject arbitrary web script or HTML via titles in content edit forms.    3.5  Low  2017-01-03  2008-09-05  View
36599  CVE-2013-0244  Cross-site scripting (XSS) vulnerability in Drupal 6.x before 6.28 and 7.x before 7.19, when running with older versions of jQuery that are vulnerable to CVE-2011-4969, allows remote attackers to inject arbitrary web script or HTML via vectors involving unspecified Javascript functions that are used to select DOM elements.    2.6  Low  2017-01-18  2014-03-08  View

Page 3138 of 17672, showing 5 records out of 88360 total, starting on record 15686, ending on 15690

Actions