NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 16056 | CVE-2010-4821 | Cross-site scripting (XSS) vulnerability in phpMyFAQ before 2.6.9 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php. | 2 | 4.3 | Medium | 2017-01-18 | 2012-11-15 | View | |
| 16057 | CVE-2010-4822 | core/model/MySQLDatabase.php in SilverStripe 2.4.x before 2.4.4, when the site is running in "live mode," allows remote attackers to obtain the SQL queries for a page via the showqueries and ajax parameters. | 2 | 4.3 | Medium | 2017-01-18 | 2012-09-18 | View | |
| 16058 | CVE-2010-4823 | Cross-site scripting (XSS) vulnerability in the httpError method in sapphire/core/control/RequestHandler.php in SilverStripe 2.3.x before 2.3.10 and 2.4.x before 2.4.4, when custom error handling is not used, allows remote attackers to inject arbitrary web script or HTML via "missing URL actions." | 2 | 4.3 | Medium | 2017-01-18 | 2012-09-18 | View | |
| 16059 | CVE-2010-4824 | SQL injection vulnerability in the augmentSQL method in core/model/Translatable.php in SilverStripe 2.3.x before 2.3.10 and 2.4.x before 2.4.4, when the Translatable extension is enabled, allows remote attackers to execute arbitrary SQL commands via the locale parameter. | 2 | 6.8 | Medium | 2017-01-18 | 2012-10-15 | View | |
| 16060 | CVE-2010-4825 | Cross-site scripting (XSS) vulnerability in magpie_debug.php in the Twitter Feed plugin (wp-twitter-feed) 0.3.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the url parameter. | 2 | 4.3 | Medium | 2017-01-18 | 2011-08-25 | View |
Page 3212 of 17672, showing 5 records out of 88360 total, starting on record 16056, ending on 16060