|
280021
|
- |
|
blogstand_banner_plugin_project
|
blogstand-smart-banner
|
Cross-site scripting (XSS) vulnerability in the Blogstand Banner (blogstand-smart-banner) plugin 1.0 for WordPress allows remote attackers to inject arbitrary web script or HTML via the bs_blog_id pa…
|
CWE-79
Cross-site Scripting
|
CVE-2014-4848
|
2024-11-21 11:10 |
2014-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280022
|
- |
|
buffercode
|
random_banner
|
Cross-site scripting (XSS) vulnerability in the Random Banner plugin 1.1.2.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the buffercode_RBanner_url_banner1 parame…
|
CWE-79
Cross-site Scripting
|
CVE-2014-4847
|
2024-11-21 11:10 |
2014-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280023
|
- |
|
matchalabs
|
metaslider
|
Cross-site scripting (XSS) vulnerability in the Meta Slider (ml-slider) plugin 2.5 for WordPress allows remote attackers to inject arbitrary web script or HTML via the id parameter to wp-admin/admin.…
|
CWE-79
Cross-site Scripting
|
CVE-2014-4846
|
2024-11-21 11:10 |
2014-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280024
|
- |
|
stillbreathing
|
bannerman
|
Cross-site scripting (XSS) vulnerability in the BannerMan plugin 0.2.4 for WordPress allows remote attackers to inject arbitrary web script or HTML via the bannerman_background parameter to wp-admin/…
|
CWE-79
Cross-site Scripting
|
CVE-2014-4845
|
2024-11-21 11:10 |
2014-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280025
|
- |
|
php
|
php
|
Use-after-free vulnerability in ext/spl/spl_array.c in the SPL component in PHP through 5.5.14 allows context-dependent attackers to cause a denial of service or possibly have unspecified other impac…
|
NVD-CWE-Other
|
CVE-2014-4698
|
2024-11-21 11:10 |
2014-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280026
|
- |
|
php
|
php
|
Use-after-free vulnerability in ext/spl/spl_dllist.c in the SPL component in PHP through 5.5.14 allows context-dependent attackers to cause a denial of service or possibly have unspecified other impa…
|
NVD-CWE-Other
|
CVE-2014-4670
|
2024-11-21 11:10 |
2014-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280027
|
- |
|
osticket enhancesoft
|
osticket
|
Multiple cross-site scripting (XSS) vulnerabilities in osTicket before 1.9.2 allow remote attackers to inject arbitrary web script or HTML via the (1) Phone Number field to open.php or (2) Phone numb…
|
CWE-79
Cross-site Scripting
|
CVE-2014-4744
|
2024-11-21 11:10 |
2014-07-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280028
|
- |
|
kajona
|
kajona
|
Multiple cross-site scripting (XSS) vulnerabilities in (1) search_ajax.tpl and (2) search_ajax_small.tpl in templates/default/tpl/module_search/ in the Search module (module_search) in Kajona before …
|
CWE-79
Cross-site Scripting
|
CVE-2014-4743
|
2024-11-21 11:10 |
2014-07-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280029
|
- |
|
kajona
|
kajona
|
Cross-site scripting (XSS) vulnerability in system/class_link.php in the System module (module_system) in Kajona before 4.5 allows remote attackers to inject arbitrary web script or HTML via the syst…
|
CWE-79
Cross-site Scripting
|
CVE-2014-4742
|
2024-11-21 11:10 |
2014-07-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280030
|
- |
|
artifectx
|
xclassified
|
SQL injection vulnerability in demo/ads.php in Artifectx xClassified 1.2 allows remote attackers to execute arbitrary SQL commands via the catid parameter.
|
CWE-89
SQL Injection
|
CVE-2014-4741
|
2024-11-21 11:10 |
2014-07-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|