NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
73128  CVE-2004-2751  SQL injection vulnerability in the members_list module in PostNuke 0.726, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the sortby parameter.    6.8  Medium  2016-12-20  2008-09-05  View
7848  CVE-2011-0818  Unspecified vulnerability in Oracle JD Edwards EnterpriseOne Tools 8.9 GA through 8.98.4.1 and OneWorld Tools through 24.1.3 allows remote attackers to affect availability, related to Enterprise Infrastructure SEC.    Medium  2017-01-07  2011-04-20  View
8360  CVE-2011-1419  Apache Tomcat 7.x before 7.0.11, when web.xml has no security constraints, does not follow ServletSecurity annotations, which allows remote attackers to bypass intended access restrictions via HTTP requests to a web application. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-1088.    5.8  Medium  2017-01-07  2011-09-21  View
8872  CVE-2011-2007  Microsoft Host Integration Server (HIS) 2004 SP1, 2006 SP1, 2009, and 2010 allows remote attackers to cause a denial of service (SNA Server service outage) via crafted TCP or UDP traffic, aka "Endless Loop DoS in snabase.exe Vulnerability."    Medium  2017-01-07  2012-01-26  View
74408  CVE-2003-1338  CRLF injection vulnerability in Aprelium Abyss Web Server 1.1.2 and earlier allows remote attackers to inject arbitrary HTTP headers and possibly conduct HTTP Response Splitting attacks via CRLF sequences in the Location header.    4.3  Medium  2017-01-03  2010-06-23  View

Page 14563 of 17672, showing 5 records out of 88360 total, starting on record 72811, ending on 72815

Actions