NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
8659  CVE-2011-1772  Multiple cross-site scripting (XSS) vulnerabilities in XWork in Apache Struts 2.x before 2.2.3, and OpenSymphony XWork in OpenSymphony WebWork, allow remote attackers to inject arbitrary web script or HTML via vectors involving (1) an action name, (2) the action attribute of an s:submit element, or (3) the method attribute of an s:submit element.    2.6  Low  2017-01-07  2012-01-18  View
8915  CVE-2011-2093  Adobe LiveCycle Data Services 3.1 and earlier, LiveCycle 9.0.0.2 and earlier, and BlazeDS 4.0.1 and earlier do not properly handle object graphs, which allows attackers to cause a denial of service via unspecified vectors, related to a "complex object graph vulnerability."    Medium  2017-01-07  2011-09-06  View
74451  CVE-2003-1381  Format string vulnerability in AMX 0.9.2 and earlier, a plugin for Valve Software"s Half-Life Server, allows remote attackers to execute arbitrary commands via format string specifiers in the amx_say command.    6.8  Medium  2017-01-03  2008-09-05  View
9171  CVE-2011-2379  Cross-site scripting (XSS) vulnerability in Bugzilla 2.4 through 2.22.7, 3.0.x through 3.3.x, 3.4.x before 3.4.12, 3.5.x, 3.6.x before 3.6.6, 3.7.x, 4.0.x before 4.0.2, and 4.1.x before 4.1.3, when Internet Explorer before 9 or Safari before 5.0.6 is used for Raw Unified mode, allows remote attackers to inject arbitrary web script or HTML via a crafted patch, related to content sniffing.    4.3  Medium  2017-01-07  2011-10-25  View
74707  CVE-1999-0037  Arbitrary command execution via metamail package using message headers, when user processes attacker"s message using metamail.    7.5  High  2017-01-05  2008-09-09  View

Page 14954 of 17672, showing 5 records out of 88360 total, starting on record 74766, ending on 74770

Actions