NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
8988 | CVE-2011-2167 | script-login in Dovecot 2.0.x before 2.0.13 does not follow the chroot configuration setting, which might allow remote authenticated users to conduct directory traversal attacks by leveraging a script. | 2 | 6.5 | Medium | 2017-01-07 | 2013-03-07 | View | |
74524 | CVE-2003-1454 | Invision Power Services Invision Board 1.0 through 1.1.1, when a forum is password protected, stores the administrator password in a cookie in plaintext, which could allow remote attackers to gain access. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
9500 | CVE-2011-2771 | Multiple cross-site scripting (XSS) vulnerabilities in Mahara before 1.4.1 allow remote attackers to inject arbitrary web script or HTML via vectors related to (1) URI attributes and (2) the External Feed component, as demonstrated by the guid element in an RSS feed. | 2 | 4.3 | Medium | 2017-01-07 | 2011-11-15 | View | |
9756 | CVE-2011-3062 | Off-by-one error in the OpenType Sanitizer in Google Chrome before 18.0.1025.142 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted OpenType file. | 2 | 6.8 | Medium | 2017-01-07 | 2013-02-14 | View | |
10012 | CVE-2011-3357 | Directory traversal vulnerability in bug_actiongroup_ext_page.php in MantisBT before 1.2.8 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the action parameter, related to bug_actiongroup_page.php. | 2 | 6.8 | Medium | 2017-01-07 | 2013-08-26 | View |
Page 1016 of 17672, showing 5 records out of 88360 total, starting on record 5076, ending on 5080