NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
9644  CVE-2011-2932  Cross-site scripting (XSS) vulnerability in activesupport/lib/active_support/core_ext/string/output_safety.rb in Ruby on Rails 2.x before 2.3.13, 3.0.x before 3.0.10, and 3.1.x before 3.1.0.rc5 allows remote attackers to inject arbitrary web script or HTML via a malformed Unicode string, related to a "UTF-8 escaping vulnerability."    4.3  Medium  2017-01-07  2012-07-06  View
75180  CVE-1999-0513  ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service.    Medium  2017-01-05  2008-09-09  View
75436  CVE-1999-0786  The dynamic linker in Solaris allows a local user to create arbitrary files via the LD_PROFILE environmental variable and a symlink attack.    4.6  Medium  2017-01-05  2008-09-09  View
10156  CVE-2011-3538  Unspecified vulnerability in the Sun Ray component in Oracle Virtualization 4.0 allows remote attackers to affect integrity, related to Authentication. NOTE: this identifier was inadvertently used for an Oracle Industry Applications issue involving TMS Help, but that issue has been assigned CVE-2011-2323.    6.8  Medium  2017-01-07  2012-05-14  View
10412  CVE-2011-3841  Cross-site scripting (XSS) vulnerability in uploadify/get_profile_avatar.php in the WP Symposium plugin before 11.12.08 for WordPress allows remote attackers to inject arbitrary web script or HTML via the uid parameter.    4.3  Medium  2017-01-07  2011-12-27  View

Page 14701 of 17672, showing 5 records out of 88360 total, starting on record 73501, ending on 73505

Actions