|
280521
|
- |
|
drupal
|
newsflash
|
Cross-site scripting (XSS) vulnerability in the NewsFlash theme 6.x-1.x before 6.x-1.7 and 7.x-1.x before 7.x-2.5 for Drupal allows remote authenticated users with the "administer themes" permission …
|
CWE-79
Cross-site Scripting
|
CVE-2014-8077
|
2024-11-21 11:18 |
2014-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280522
|
- |
|
drupal
|
professional_theme
|
Cross-site scripting (XSS) vulnerability in the Professional theme 7.x before 7.x-2.04 for Drupal allows remote authenticated users with the "administer themes" permission to inject arbitrary web scr…
|
CWE-79
Cross-site Scripting
|
CVE-2014-8076
|
2024-11-21 11:18 |
2014-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280523
|
- |
|
drupal
|
tribune
|
Cross-site scripting (XSS) vulnerability in the Tribune module 6.x-1.x and 7.x-3.x for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via a n…
|
CWE-79
Cross-site Scripting
|
CVE-2014-8075
|
2024-11-21 11:18 |
2014-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280524
|
- |
|
adobe
|
digital_editions
|
Adobe Digital Editions (DE) 4 does not use encryption for transmission of data to adelogs.adobe.com, which allows remote attackers to obtain sensitive information by sniffing the network, as demonstr…
|
CWE-200
Information Exposure
|
CVE-2014-8068
|
2024-11-21 11:18 |
2014-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280525
|
- |
|
joomla
|
joomla\!
|
Joomla! CMS 2.5.x before 2.5.19 and 3.x before 3.2.3 allows remote attackers to authenticate and bypass intended restrictions via vectors involving GMail authentication.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-7984
|
2024-11-21 11:18 |
2014-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280526
|
- |
|
joomla
|
joomla\!
|
Cross-site scripting (XSS) vulnerability in com_contact in Joomla! CMS 3.1.2 through 3.2.x before 3.2.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2014-7983
|
2024-11-21 11:18 |
2014-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280527
|
- |
|
joomla
|
joomla\!
|
Cross-site scripting (XSS) vulnerability in Joomla! CMS 2.5.x before 2.5.19 and 3.x before 3.2.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2014-7982
|
2024-11-21 11:18 |
2014-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280528
|
- |
|
joomla
|
joomla\!
|
SQL injection vulnerability in Joomla! CMS 3.1.x and 3.2.x before 3.2.3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2014-7981
|
2024-11-21 11:18 |
2014-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280529
|
- |
|
drupal
|
zen
|
Multiple cross-site scripting (XSS) vulnerabilities in template.php in Zen theme 7.x-3.x before 7.x-3.3 and 7.x-5.x before 7.x-5.5 for Drupal allow remote authenticated users with the "administer the…
|
CWE-79
Cross-site Scripting
|
CVE-2014-7980
|
2024-11-21 11:18 |
2014-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280530
|
- |
|
drupal
|
simplecorp
|
Cross-site scripting (XSS) vulnerability in the SimpleCorp theme 7.x-1.x before 7.x-1.1 for Drupal allows remote authenticated users with the "administer themes" permission to inject arbitrary web sc…
|
CWE-79
Cross-site Scripting
|
CVE-2014-7979
|
2024-11-21 11:18 |
2014-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|