NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
10773 | CVE-2011-4304 | The chat functionality in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 allows remote authenticated users to discover the name of any user via a beep operation. | 2 | 4 | Medium | 2017-01-07 | 2012-07-11 | View | |
76309 | CVE-2000-0066 | WebSite Pro allows remote attackers to determine the real pathname of webdirectories via a malformed URL request. | 2 | 5 | Medium | 2017-01-05 | 2008-09-10 | View | |
11029 | CVE-2011-4675 | The pathname canonicalization functionality in io/filesystem/filesystem.cc in Widelands before 15.1 expands leading ~ (tilde) characters to home-directory pathnames but does not restrict use of these characters in strings received from the network, which might allow remote attackers to conduct absolute path traversal attacks and overwrite arbitrary files via a ~ in a pathname that is used for a file transfer in an Internet game, a different vulnerability than CVE-2011-1932. | 2 | 6.4 | Medium | 2017-01-07 | 2011-12-12 | View | |
76565 | CVE-2000-0322 | The passwd.php3 CGI script in the Red Hat Piranha Virtual Server Package allows local users to execute arbitrary commands via shell metacharacters. | 2 | 10 | High | 2017-01-05 | 2016-09-16 | View | |
11285 | CVE-2011-5025 | Multiple cross-site scripting (XSS) vulnerabilities in the wiki application in Yaws 1.88 allow remote attackers to inject arbitrary web script or HTML via (1) the tag parameter to editTag.yaws, (2) the index parameter to showOldPage.yaws, (3) the node parameter to allRefsToMe.yaws, or (4) the text parameter to editPage.yaws. | 2 | 4.3 | Medium | 2017-01-07 | 2012-09-24 | View |
Page 1271 of 17672, showing 5 records out of 88360 total, starting on record 6351, ending on 6355