Show filters
115 Total Results
Displaying 71-80 of 115
Sort by:
Attacker Value
Unknown

CVE-2014-8376

Disclosure Date: October 21, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the context administration sub-panel in the Site Banner module before 7.x-4.1 for Drupal allows remote authenticated users with the "Administer contexts" Context UI module permission to inject arbitrary web script or HTML via vectors related to context settings.
0
Attacker Value
Unknown

CVE-2014-7728

Disclosure Date: October 21, 2014 (last updated October 05, 2023)
The Logan Banner (aka com.soln.S8B5C1F53B8CBE06D5DE0A0E7E23DCDA7) application 1.0010.b0010 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown

CVE-2014-4847

Disclosure Date: July 10, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the Random Banner plugin 1.1.2.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the buffercode_RBanner_url_banner1 parameter in an update action to wp-admin/options.php.
0
Attacker Value
Unknown

CVE-2014-4848

Disclosure Date: July 10, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the Blogstand Banner (blogstand-smart-banner) plugin 1.0 for WordPress allows remote attackers to inject arbitrary web script or HTML via the bs_blog_id parameter to wp-admin/options-general.php.
0
Attacker Value
Unknown

CVE-2014-4845

Disclosure Date: July 10, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the BannerMan plugin 0.2.4 for WordPress allows remote attackers to inject arbitrary web script or HTML via the bannerman_background parameter to wp-admin/options-general.php.
0
Attacker Value
Unknown

CVE-2014-4723

Disclosure Date: July 07, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the Easy Banners plugin 1.4 for WordPress allows remote attackers to inject arbitrary web script or HTML via the name parameter to wp-admin/options-general.php.
0
Attacker Value
Unknown

CVE-2014-4724

Disclosure Date: July 07, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the Custom Banners plugin 1.2.2.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the custom_banners_registered_name parameter to wp-admin/options.php.
0
Attacker Value
Unknown

CVE-2010-4981

Disclosure Date: November 01, 2011 (last updated October 04, 2023)
SQL injection vulnerability in trackads.php in YourFreeWorld Banner Management allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2010-4783

Disclosure Date: April 07, 2011 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in index.php in PHP Web Scripts Easy Banner Free 2009.05.18, when magic_quotes_gpc is disabled, allow remote attackers to inject arbitrary web script or HTML via the (1) siteurl and (2) urlbanner parameters.
0
Attacker Value
Unknown

CVE-2010-4784

Disclosure Date: April 07, 2011 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in member.php in PHP Web Scripts Easy Banner Free 2009.05.18, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.
0