NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 13529 | CVE-2010-2038 | Cross-site scripting (XSS) vulnerability in include/tool/editing_files.php in gpEasy CMS 1.6.2 allows remote authenticated users, with Edit privileges, to inject arbitrary web script or HTML via the gpcontent parameter to index.php. NOTE: some of these details are obtained from third party information. | 2 | 2.1 | Low | 2017-01-18 | 2010-05-26 | View | |
| 14001 | CVE-2010-2543 | Cross-site scripting (XSS) vulnerability in include/top_graph_header.php in Cacti before 0.8.7g allows remote attackers to inject arbitrary web script or HTML via the graph_start parameter to graph.php. NOTE: this vulnerability exists because of an incorrect fix for CVE-2009-4032.2.b. | 2 | 4.3 | Medium | 2017-01-18 | 2012-02-15 | View | |
| 67095 | CVE-2005-1356 | Cross-site scripting (XSS) vulnerability in includer.cgi script in The Includer allows remote attackers to inject arbitrary web script or HTML via the argument. | 2 | 4.3 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 31183 | CVE-2014-2853 | Cross-site scripting (XSS) vulnerability in includes/actions/InfoAction.php in MediaWiki before 1.21.9 and 1.22.x before 1.22.6 allows remote attackers to inject arbitrary web script or HTML via the sort key in an info action. | 2 | 4.3 | Medium | 2017-01-19 | 2015-09-10 | View | |
| 83605 | CVE-2016-0770 | Cross-site scripting (XSS) vulnerability in includes/admin/pages/manage.php in the Connections Business Directory plugin before 8.5.9 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s variable. | 2 | 4.3 | Medium | 2017-03-18 | 2017-03-17 | View |
Page 3305 of 17672, showing 5 records out of 88360 total, starting on record 16521, ending on 16525