to wp-admin/options-general.php. 2015-01-08 6.8 CVE-2015-0920 XF XF MISC basic-cms -- sweetrice Cross-site scripting (XSS) vulnerability in as/index.php in SweetRice CMS before 0.6.7.1...
Divx plugins, allow remote attackers to execute arbitrary code via a (1) negative or (2)... (dot dot) in the url parameter to photoalbum/index.php. 2015-01-13 7.5 CVE-2014-10037 XF...