NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
16056  CVE-2010-4821  Cross-site scripting (XSS) vulnerability in phpMyFAQ before 2.6.9 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php.    4.3  Medium  2017-01-18  2012-11-15  View
16057  CVE-2010-4822  core/model/MySQLDatabase.php in SilverStripe 2.4.x before 2.4.4, when the site is running in "live mode," allows remote attackers to obtain the SQL queries for a page via the showqueries and ajax parameters.    4.3  Medium  2017-01-18  2012-09-18  View
16058  CVE-2010-4823  Cross-site scripting (XSS) vulnerability in the httpError method in sapphire/core/control/RequestHandler.php in SilverStripe 2.3.x before 2.3.10 and 2.4.x before 2.4.4, when custom error handling is not used, allows remote attackers to inject arbitrary web script or HTML via "missing URL actions."    4.3  Medium  2017-01-18  2012-09-18  View
16059  CVE-2010-4824  SQL injection vulnerability in the augmentSQL method in core/model/Translatable.php in SilverStripe 2.3.x before 2.3.10 and 2.4.x before 2.4.4, when the Translatable extension is enabled, allows remote attackers to execute arbitrary SQL commands via the locale parameter.    6.8  Medium  2017-01-18  2012-10-15  View
16060  CVE-2010-4825  Cross-site scripting (XSS) vulnerability in magpie_debug.php in the Twitter Feed plugin (wp-twitter-feed) 0.3.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the url parameter.    4.3  Medium  2017-01-18  2011-08-25  View

Page 3212 of 17672, showing 5 records out of 88360 total, starting on record 16056, ending on 16060

Actions