NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
10277 | CVE-2011-3705 | Arctic Fox CMS 0.9.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by acp/includes/edit.inc.php and certain other files. | 2 | 5 | Medium | 2017-01-07 | 2012-03-13 | View | |
10533 | CVE-2011-3979 | Cross-site scripting (XSS) vulnerability in ztemp/view_compiled/Theme/theme_admin_setasdefault.php in the theme module in Zikula Application Framework 1.3.0 build 3168, 1.2.7, and probably other versions allows remote attackers to inject arbitrary web script or HTML via the themename parameter in the setasdefault action to index.php. | 2 | 4.3 | Medium | 2017-01-07 | 2012-02-13 | View | |
10789 | CVE-2011-4321 | The password reset functionality in Joomla! 1.5.x through 1.5.24 uses weak random numbers, which makes it easier for remote attackers to change the passwords of arbitrary users via unspecified vectors. | 2 | 5 | Medium | 2017-01-07 | 2011-11-28 | View | |
76325 | CVE-2000-0082 | WebTV email client allows remote attackers to force the client to send email without the user"s knowledge via HTML. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
11045 | CVE-2011-4692 | WebKit, as used in Apple Safari 5.1.1 and earlier and Google Chrome 15 and earlier, does not prevent capture of data about the time required for image loading, which makes it easier for remote attackers to determine whether an image exists in the browser cache via crafted JavaScript code, as demonstrated by visipisi. | 2 | 5 | Medium | 2017-01-07 | 2012-01-26 | View |
Page 1352 of 17672, showing 5 records out of 88360 total, starting on record 6756, ending on 6760