NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
8988  CVE-2011-2167  script-login in Dovecot 2.0.x before 2.0.13 does not follow the chroot configuration setting, which might allow remote authenticated users to conduct directory traversal attacks by leveraging a script.    6.5  Medium  2017-01-07  2013-03-07  View
74524  CVE-2003-1454  Invision Power Services Invision Board 1.0 through 1.1.1, when a forum is password protected, stores the administrator password in a cookie in plaintext, which could allow remote attackers to gain access.    Medium  2017-01-03  2008-09-05  View
9500  CVE-2011-2771  Multiple cross-site scripting (XSS) vulnerabilities in Mahara before 1.4.1 allow remote attackers to inject arbitrary web script or HTML via vectors related to (1) URI attributes and (2) the External Feed component, as demonstrated by the guid element in an RSS feed.    4.3  Medium  2017-01-07  2011-11-15  View
9756  CVE-2011-3062  Off-by-one error in the OpenType Sanitizer in Google Chrome before 18.0.1025.142 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted OpenType file.    6.8  Medium  2017-01-07  2013-02-14  View
10012  CVE-2011-3357  Directory traversal vulnerability in bug_actiongroup_ext_page.php in MantisBT before 1.2.8 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the action parameter, related to bug_actiongroup_page.php.    6.8  Medium  2017-01-07  2013-08-26  View

Page 1016 of 17672, showing 5 records out of 88360 total, starting on record 5076, ending on 5080

Actions