|
287501
|
- |
|
devsaran
|
clean_theme
|
Cross-site scripting (XSS) vulnerability in the 3 slide gallery in the Clean Theme before 7.x-1.3 for Drupal allows remote authenticated users with the administer themes permission to inject arbitrar…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1784
|
2024-11-21 10:50 |
2013-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287502
|
- |
|
devsaran
|
business
|
Cross-site scripting (XSS) vulnerability in the 3 slide gallery in page--front.tpl.php in the Business theme before 7.x-1.8 for Drupal allows remote authenticated users with the administer themes per…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1783
|
2024-11-21 10:50 |
2013-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287503
|
- |
|
devsaran
|
responsive_blog
|
Cross-site scripting (XSS) vulnerability in the Responsive Blog Theme 7.x-1.x before 7.x-1.6 for Drupal allows remote authenticated users with the administer themes permission to inject arbitrary web…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1782
|
2024-11-21 10:50 |
2013-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287504
|
- |
|
devsaran
|
professional_theme
|
Cross-site scripting (XSS) vulnerability in the 3 slide gallery in the Professional theme before 7.x-1.4 for Drupal allows remote authenticated users with the administer themes permission to inject a…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1781
|
2024-11-21 10:50 |
2013-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287505
|
- |
|
devsaran
|
best_responsive
|
Cross-site scripting (XSS) vulnerability in the Best Responsive Theme 7.x-1.x before 7.x-1.1 for Drupal allows remote authenticated users with the administer themes permission to inject arbitrary web…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1780
|
2024-11-21 10:50 |
2013-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287506
|
- |
|
devsaran
|
fresh
|
Cross-site scripting (XSS) vulnerability in the 3 slide gallery in the Fresh theme before 7.x-1.4 for Drupal allows remote authenticated users with the administer themes permission to inject arbitrar…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1779
|
2024-11-21 10:50 |
2013-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287507
|
- |
|
devsaran
|
creative
|
Cross-site scripting (XSS) vulnerability in the Creative Theme 7.x-1.x before 7.x-1.2 for Drupal allows remote authenticated users with the administer themes permission to inject arbitrary web script…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1778
|
2024-11-21 10:50 |
2013-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287508
|
- |
|
moodle
|
moodle
|
Moodle 2.x through 2.1.10, 2.2.x before 2.2.8, 2.3.x before 2.3.5, and 2.4.x before 2.4.2 does not properly manage privileges for WebDAV repositories, which allows remote authenticated users to read,…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-1836
|
2024-11-21 10:50 |
2013-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287509
|
- |
|
moodle
|
moodle
|
Moodle 2.x through 2.1.10, 2.2.x before 2.2.8, 2.3.x before 2.3.5, and 2.4.x before 2.4.2 allows remote authenticated administrators to obtain sensitive information from the external repositories of …
|
CWE-200
Information Exposure
|
CVE-2013-1835
|
2024-11-21 10:50 |
2013-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287510
|
- |
|
moodle
|
moodle
|
notes/edit.php in Moodle 1.9.x through 1.9.19, 2.x through 2.1.10, 2.2.x before 2.2.8, 2.3.x before 2.3.5, and 2.4.x before 2.4.2 allows remote authenticated users to reassign notes via a modified (1…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-1834
|
2024-11-21 10:50 |
2013-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|