NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 60421 | CVE-2006-1716 | Cross-site scripting (XSS) vulnerability in inc/functions_post.php in MyBB (aka MyBulletinBoard) 1.10 allows remote attackers to inject arbitrary web script or HTML via a JavaScript event in a BBCode img tag. NOTE: the email vector is already covered by CVE-2006-1625, although it might stem from the same core issue. | 2 | 5.1 | Medium | 2016-12-20 | 2016-11-18 | View | |
| 11302 | CVE-2011-5042 | Cross-site scripting (XSS) vulnerability in inc/lib/lib.base.php in SASHA 0.2.0 allows remote attackers to inject arbitrary web script or HTML via the instructors parameter. NOTE: the original disclosure also mentions the section_title parameter, but this was disputed by the vendor and retracted by the original researcher. | 2 | 4.3 | Medium | 2017-01-07 | 2012-01-02 | View | |
| 42009 | CVE-2013-7276 | Cross-site scripting (XSS) vulnerability in inc/raf_form.php in the Recommend to a friend plugin 2.0.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the current_url parameter. | 2 | 4.3 | Medium | 2017-01-18 | 2014-02-25 | View | |
| 10961 | CVE-2011-4572 | Cross-site scripting (XSS) vulnerability in inc/tesmodrewite.php in CF Image Hosting Script 1.3.82, 1.4.1, and probably other versions before 1.4.2 allows remote attackers to inject arbitrary web script or HTML via the q parameter. NOTE: this was originally reported as a file disclosure vulnerability, but this is likely inaccurate. | 2 | 4.3 | Medium | 2017-01-07 | 2011-11-29 | View | |
| 46890 | CVE-2012-5866 | Cross-site scripting (XSS) vulnerability in include.php in Achievo 1.4.5 allows remote attackers to inject arbitrary web script or HTML via the field parameter. | 2 | 4.3 | Medium | 2017-01-19 | 2014-10-24 | View |
Page 3303 of 17672, showing 5 records out of 88360 total, starting on record 16511, ending on 16515