NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
44191 | CVE-2012-2379 | Apache CXF 2.4.x before 2.4.8, 2.5.x before 2.5.4, and 2.6.x before 2.6.1, when a Supporting Token specifies a child WS-SecurityPolicy 1.1 or 1.2 policy, does not properly ensure that an XML element is signed or encrypted, which has unspecified impact and attack vectors. | 2 | 10 | High | 2017-01-19 | 2013-02-13 | View | |
53151 | CVE-2007-0938 | Microsoft Content Management Server (MCMS) 2001 SP1 and 2002 SP2 does not properly handle certain characters in a crafted HTTP GET request, which allows remote attackers to execute arbitrary code, aka the "CMS Memory Corruption Vulnerability." | 2 | 10 | High | 2017-01-07 | 2011-03-07 | View | |
58527 | CVE-2007-6532 | Double free vulnerability in the Widget Library (libxfcegui4) in Xfce before 4.4.2 might allow remote attackers to execute arbitrary code via unknown vectors related to the "cliend id, program name and working directory in session management." | 2 | 10 | High | 2017-01-07 | 2011-03-07 | View | |
59295 | CVE-2006-0559 | Format string vulnerability in the SMTP server for McAfee WebShield 4.5 MR2 and earlier allows remote attackers to execute arbitrary code via format strings in the domain name portion of a destination address, which are not properly handled when a bounce message is constructed. | 2 | 10 | High | 2016-12-20 | 2011-03-07 | View | |
59807 | CVE-2006-1085 | admin.php in PHP-Stats 0.1.9.1 and earlier allows remote attackers to bypass authentication, gain administrator privileges, and execute arbitrary PHP code by modifying the option[admin_pass] parameter and setting the pass_cookie to the MD5 hash of the specified password. | 2 | 10 | High | 2016-12-20 | 2011-03-07 | View |
Page 1271 of 17672, showing 5 records out of 88360 total, starting on record 6351, ending on 6355