NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 25218 | CVE-2015-3363 | Cross-site request forgery (CSRF) vulnerability in the Contact Form Fields module before 6.x-2.3 for Drupal allows remote attackers to hijack the authentication of administrators for requests that delete fields via unspecified vectors. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-05 | View | |
| 25217 | CVE-2015-3362 | Cross-site scripting (XSS) vulnerability in the Video module before 7.x-2.11 for Drupal, when using the video WYSIWYG plugin, allows remote authenticated users to inject arbitrary web script or HTML via a node title. | 2 | 3.5 | Low | 2017-01-19 | 2016-12-05 | View | |
| 25216 | CVE-2015-3361 | Cross-site scripting (XSS) vulnerability in the Linkit module before 7.x-2.7 and 7.x-3.x before 7.x-3.3 for Drupal, when the node search plugin is enabled, allows remote authenticated users to inject arbitrary web script or HTML via a node title. | 2 | 2.1 | Low | 2017-01-19 | 2016-12-05 | View | |
| 25215 | CVE-2015-3360 | Cross-site scripting (XSS) vulnerability in the Term Merge module before 7.x-1.2 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors. | 2 | 3.5 | Low | 2017-01-19 | 2016-12-05 | View | |
| 25214 | CVE-2015-3359 | Multiple cross-site scripting (XSS) vulnerabilities in the Room Reservations module before 7.x-1.1 for Drupal allow remote authenticated users with the "Administer the room reservations system" permission to inject arbitrary web script or HTML via the (1) node title of a "Room Reservations Category" or (2) body of a "Room Reservations Room" node. | 2 | 3.5 | Low | 2017-01-19 | 2016-12-05 | View |
Page 3320 of 17672, showing 5 records out of 88360 total, starting on record 16596, ending on 16600