NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 8659 | CVE-2011-1772 | Multiple cross-site scripting (XSS) vulnerabilities in XWork in Apache Struts 2.x before 2.2.3, and OpenSymphony XWork in OpenSymphony WebWork, allow remote attackers to inject arbitrary web script or HTML via vectors involving (1) an action name, (2) the action attribute of an s:submit element, or (3) the method attribute of an s:submit element. | 2 | 2.6 | Low | 2017-01-07 | 2012-01-18 | View | |
| 8915 | CVE-2011-2093 | Adobe LiveCycle Data Services 3.1 and earlier, LiveCycle 9.0.0.2 and earlier, and BlazeDS 4.0.1 and earlier do not properly handle object graphs, which allows attackers to cause a denial of service via unspecified vectors, related to a "complex object graph vulnerability." | 2 | 5 | Medium | 2017-01-07 | 2011-09-06 | View | |
| 74451 | CVE-2003-1381 | Format string vulnerability in AMX 0.9.2 and earlier, a plugin for Valve Software"s Half-Life Server, allows remote attackers to execute arbitrary commands via format string specifiers in the amx_say command. | 2 | 6.8 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 9171 | CVE-2011-2379 | Cross-site scripting (XSS) vulnerability in Bugzilla 2.4 through 2.22.7, 3.0.x through 3.3.x, 3.4.x before 3.4.12, 3.5.x, 3.6.x before 3.6.6, 3.7.x, 4.0.x before 4.0.2, and 4.1.x before 4.1.3, when Internet Explorer before 9 or Safari before 5.0.6 is used for Raw Unified mode, allows remote attackers to inject arbitrary web script or HTML via a crafted patch, related to content sniffing. | 2 | 4.3 | Medium | 2017-01-07 | 2011-10-25 | View | |
| 74707 | CVE-1999-0037 | Arbitrary command execution via metamail package using message headers, when user processes attacker"s message using metamail. | 2 | 7.5 | High | 2017-01-05 | 2008-09-09 | View |
Page 14954 of 17672, showing 5 records out of 88360 total, starting on record 74766, ending on 74770