NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 10704 | CVE-2011-4212 | The sandbox environment in the Google App Engine Python SDK before 1.5.4 does not properly prevent os.popen calls, which allows local users to bypass intended access restrictions and execute arbitrary commands via a dev_appserver.RestrictedPathFunction._original_os reference within the code parameter to _ah/admin/interactive/execute, a different vulnerability than CVE-2011-1364. | 2 | 7.2 | High | 2017-01-07 | 2012-01-26 | View | |
| 76240 | CVE-1999-1590 | Directory traversal vulnerability in Muhammad A. Muquit wwwcount (Count.cgi) 2.3 allows remote attackers to read arbitrary GIF files via ".." sequences in the image parameter, a different vulnerability than CVE-1999-0021. | 2 | 3.5 | Low | 2017-01-05 | 2008-09-05 | View | |
| 10960 | CVE-2011-4571 | SQL injection vulnerability in the Estate Agent (com_estateagent) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a showEO action to index.php. | 2 | 7.5 | High | 2017-01-07 | 2011-11-29 | View | |
| 76496 | CVE-2000-0253 | The dansie shopping cart application cart.pl allows remote attackers to modify sensitive purchase information via hidden form fields. | 2 | 10 | High | 2017-01-05 | 2008-09-10 | View | |
| 11216 | CVE-2011-4890 | The server in IBM solidDB 6.5 before FP9 and 7.0 before FP1 allows remote authenticated users to cause a denial of service (daemon crash) via a SELECT statement with a ROWNUM condition involving a subquery. | 2 | 4 | Medium | 2017-01-07 | 2012-10-09 | View |
Page 14422 of 17672, showing 5 records out of 88360 total, starting on record 72106, ending on 72110