NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 25826 | CVE-2015-4368 | The Commerce Ogone module 7.x-1.x before 7.x-1.5 for Drupal allows remote attackers to complete the checkout for an order without paying via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2016-06-09 | View | |
| 25825 | CVE-2015-4367 | Cross-site scripting (XSS) vulnerability in the Simple Subscription module before 6.x-1.1 and 7.x-1.x before 7.x-1.1 for Drupal allows remote authenticated users with the "administer blocks" permission to inject arbitrary web script or HTML via vectors related to block content. | 2 | 3.5 | Low | 2017-01-19 | 2015-06-26 | View | |
| 25824 | CVE-2015-4366 | Cross-site scripting (XSS) vulnerability in the Mover module 6.x-1.0 for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via unspecified vectors. | 2 | 3.5 | Low | 2017-01-19 | 2015-06-30 | View | |
| 25823 | CVE-2015-4365 | Cross-site scripting (XSS) vulnerability in the Taxonomy Accordion module for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via vectors related to taxonomy terms. | 2 | 3.5 | Low | 2017-01-19 | 2015-06-30 | View | |
| 25822 | CVE-2015-4364 | Multiple cross-site request forgery (CSRF) vulnerabilities in includes/campaignmonitor_lists.admin.inc in the Campaign Monitor module 7.x-1.0 for Drupal allow remote attackers to hijack the authentication of users for requests that (1) enable list subscriptions via a request to admin/config/services/campaignmonitor/lists/%/enable or (2) disable list subscriptions via a request to admin/config/services/campaignmonitor/lists/%/disable. | 2 | 6.8 | Medium | 2017-01-19 | 2016-06-09 | View |
Page 3194 of 17672, showing 5 records out of 88360 total, starting on record 15966, ending on 15970