NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 25243 | CVE-2015-3389 | Cross-site scripting (XSS) vulnerability in the Download counts report page in the Public Download Count module (pubdlcnt) 7.x-1.x-dev and earlier for Drupal allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors. | 2 | 3.5 | Low | 2017-01-19 | 2016-12-05 | View | |
| 25242 | CVE-2015-3388 | Cross-site request forgery (CSRF) vulnerability in the Commerce Balanced Payments module for Drupal allows remote attackers to hijack the authentication of arbitrary users for requests that delete the user"s configured bank accounts via unspecified vectors. | 2 | 5.8 | Medium | 2017-01-19 | 2016-12-05 | View | |
| 25241 | CVE-2015-3387 | Multiple cross-site scripting (XSS) vulnerabilities in the Taxonomy Tools module before 7.x-1.4 for Drupal allow remote authenticated users to inject arbitrary web script or HTML via a (1) node or (2) taxonomy term title. | 2 | 3.5 | Low | 2017-01-19 | 2016-12-05 | View | |
| 25240 | CVE-2015-3386 | Cross-site scripting (XSS) vulnerability in the Node Access Product module for Drupal allows remote authenticated users to inject arbitrary web script or HTML via a node title. | 2 | 3.5 | Low | 2017-01-19 | 2016-12-05 | View | |
| 25239 | CVE-2015-3385 | Cross-site scripting (XSS) vulnerability in the Taxonomy Path module before 7.x-1.2 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via the "Link to path" field formatter. | 2 | 3.5 | Low | 2017-01-19 | 2016-12-05 | View |
Page 3315 of 17672, showing 5 records out of 88360 total, starting on record 16571, ending on 16575