NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
25243  CVE-2015-3389  Cross-site scripting (XSS) vulnerability in the Download counts report page in the Public Download Count module (pubdlcnt) 7.x-1.x-dev and earlier for Drupal allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.    3.5  Low  2017-01-19  2016-12-05  View
25242  CVE-2015-3388  Cross-site request forgery (CSRF) vulnerability in the Commerce Balanced Payments module for Drupal allows remote attackers to hijack the authentication of arbitrary users for requests that delete the user"s configured bank accounts via unspecified vectors.    5.8  Medium  2017-01-19  2016-12-05  View
25241  CVE-2015-3387  Multiple cross-site scripting (XSS) vulnerabilities in the Taxonomy Tools module before 7.x-1.4 for Drupal allow remote authenticated users to inject arbitrary web script or HTML via a (1) node or (2) taxonomy term title.    3.5  Low  2017-01-19  2016-12-05  View
25240  CVE-2015-3386  Cross-site scripting (XSS) vulnerability in the Node Access Product module for Drupal allows remote authenticated users to inject arbitrary web script or HTML via a node title.    3.5  Low  2017-01-19  2016-12-05  View
25239  CVE-2015-3385  Cross-site scripting (XSS) vulnerability in the Taxonomy Path module before 7.x-1.2 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via the "Link to path" field formatter.    3.5  Low  2017-01-19  2016-12-05  View

Page 3315 of 17672, showing 5 records out of 88360 total, starting on record 16571, ending on 16575

Actions