NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
9513  CVE-2011-2786  Google Chrome before 13.0.782.107 does not ensure that the speech-input bubble is shown on the product"s screen, which might make it easier for remote attackers to make audio recordings via a crafted web page containing an INPUT element.    4.3  Medium  2017-01-07  2012-01-26  View
75049  CVE-1999-0380  SLMail 3.1 and 3.2 allows local users to access any file in the NTFS file system when the Remote Administration Service (RAS) is enabled by setting a user"s Finger File to point to the target file, then running finger on the user.    4.6  Medium  2017-01-05  2016-10-17  View
10025  CVE-2011-3371  Multiple cross-site scripting (XSS) vulnerabilities in include/functions.php in PunBB before 1.3.6 allow remote attackers to inject arbitrary web script or HTML via the (1) id, (2) form_sent, (3) csrf_token, (4) req_confirm, or (5) delete parameter to delete.php, the (6) id, (7) form_sent, (8) csrf_token, (9) req_message, or (10) submit parameter to edit.php, the (11) action, (12) form_sent, (13) csrf_token, (14) req_email, or (15) request_pass parameter to login.php, the (16) email, (17) form_sent, (18) redirect_url, (19) csrf_token, (20) req_subject, (21) req_message, or (22) submit parameter to misc.php, the (23) action, (24) id, (25) form_sent, (26) csrf_token, (27) req_old_password, (28) req_new_password1, (29) req_new_password2, or (30) update parameter to profile.php, or the (31) action, (32) form_sent, (33) csrf_token, (34) req_username, (35) req_password1, (36) req_password2, (37) req_email1, (38) timezone, or (39) register parameter to register.php.    4.3  Medium  2017-01-07  2012-05-18  View
10281  CVE-2011-3709  b2evolution 3.3.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by locales/ru_RU/ru-RU.locale.php and certain other files.    Medium  2017-01-07  2012-03-13  View
75817  CVE-1999-1167  Cross-site scripting vulnerability in Third Voice Web annotation utility allows remote users to read sensitive data and generate fake web pages for other Third Voice users by injecting malicious Javascript into an annotation.    6.4  Medium  2017-01-05  2008-09-05  View

Page 1493 of 17672, showing 5 records out of 88360 total, starting on record 7461, ending on 7465

Actions