NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 47192 | CVE-2012-6511 | Multiple cross-site scripting (XSS) vulnerabilities in organizer/page/users.php in the Organizer plugin 1.2.1 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) delete_id parameter or (2) extension parameter in an "Update Setting" action to wp-admin/admin.php. | 2 | 4.3 | Medium | 2017-01-19 | 2013-01-29 | View | |
| 47704 | CVE-2009-0372 | Unrestricted file upload vulnerability in index.php in Miltenovik Manojlo MemHT Portal 4.0.1 and earlier allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension and an image content type via a users editProfile action, then accessing this file via a direct request to the file in images/avatar/uploaded/. | 2 | 6.5 | Medium | 2017-01-07 | 2009-02-02 | View | |
| 48472 | CVE-2009-1179 | Integer overflow in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to execute arbitrary code via a crafted PDF file. | 2 | 6.8 | Medium | 2017-01-07 | 2012-01-18 | View | |
| 48984 | CVE-2009-1715 | Cross-site scripting (XSS) vulnerability in Web Inspector in WebKit in Apple Safari before 4.0 allows user-assisted remote attackers to inject arbitrary web script or HTML, and read local files, via vectors related to script execution with incorrect privileges. | 2 | 4.3 | Medium | 2017-01-07 | 2011-02-17 | View | |
| 50008 | CVE-2009-2783 | Multiple cross-site scripting (XSS) vulnerabilities in XOOPS 2.3.3 allow remote attackers to inject arbitrary web script or HTML via the (1) op parameter to modules/pm/viewpmsg.php and (2) query string to modules/profile/user.php. | 2 | 4.3 | Medium | 2017-01-07 | 2013-08-14 | View |
Page 3182 of 17672, showing 5 records out of 88360 total, starting on record 15906, ending on 15910