NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
10704  CVE-2011-4212  The sandbox environment in the Google App Engine Python SDK before 1.5.4 does not properly prevent os.popen calls, which allows local users to bypass intended access restrictions and execute arbitrary commands via a dev_appserver.RestrictedPathFunction._original_os reference within the code parameter to _ah/admin/interactive/execute, a different vulnerability than CVE-2011-1364.    7.2  High  2017-01-07  2012-01-26  View
76240  CVE-1999-1590  Directory traversal vulnerability in Muhammad A. Muquit wwwcount (Count.cgi) 2.3 allows remote attackers to read arbitrary GIF files via ".." sequences in the image parameter, a different vulnerability than CVE-1999-0021.    3.5  Low  2017-01-05  2008-09-05  View
10960  CVE-2011-4571  SQL injection vulnerability in the Estate Agent (com_estateagent) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a showEO action to index.php.    7.5  High  2017-01-07  2011-11-29  View
76496  CVE-2000-0253  The dansie shopping cart application cart.pl allows remote attackers to modify sensitive purchase information via hidden form fields.    10  High  2017-01-05  2008-09-10  View
11216  CVE-2011-4890  The server in IBM solidDB 6.5 before FP9 and 7.0 before FP1 allows remote authenticated users to cause a denial of service (daemon crash) via a SELECT statement with a ROWNUM condition involving a subquery.    Medium  2017-01-07  2012-10-09  View

Page 14422 of 17672, showing 5 records out of 88360 total, starting on record 72106, ending on 72110

Actions