NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
55391  CVE-2007-3238  Cross-site scripting (XSS) vulnerability in functions.php in the default theme in WordPress 2.2 allows remote authenticated administrators to inject arbitrary web script or HTML via the PATH_INFO (REQUEST_URI) to wp-admin/themes.php, a different vulnerability than CVE-2007-1622. NOTE: this might not cross privilege boundaries in some configurations, since the Administrator role has the unfiltered_html capability.    Medium  2017-01-07  2012-10-30  View
8886  CVE-2011-2023  Cross-site scripting (XSS) vulnerability in functions/mime.php in SquirrelMail before 1.4.22 allows remote attackers to inject arbitrary web script or HTML via a crafted STYLE element in an e-mail message.    4.3  Medium  2017-01-07  2012-02-13  View
61582  CVE-2006-2897  Cross-site scripting (XSS) vulnerability in FunkBoard 0.71 allows remote attackers to inject arbitrary HTML or web script via unspecified vectors.    2.6  Low  2016-12-20  2011-03-07  View
42934  CVE-2012-0869  Cross-site scripting (XSS) vulnerability in fup in Frams" Fast File EXchange (F*EX, aka fex) before 20120215 allows remote attackers to inject arbitrary web script or HTML via the id parameter.    4.3  Medium  2017-01-19  2013-01-29  View
81117  CVE-2002-2166  Cross-site scripting (XSS) vulnerability in FuseTalk 2.0 and 3.0 allows remote attackers to insert arbitrary HTML and web script.    4.3  Medium  2017-01-05  2008-09-05  View

Page 3197 of 17672, showing 5 records out of 88360 total, starting on record 15981, ending on 15985

Actions