NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 28547 | CVE-2015-8379 | CakePHP 2.x and 3.x before 3.1.5 might allow remote attackers to bypass the CSRF protection mechanism via the _method parameter. | 2 | 6.8 | Medium | 2017-01-19 | 2016-01-27 | View | |
| 10284 | CVE-2011-3712 | CakePHP 1.3.7 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by dispatcher.php and certain other files. | 2 | 5 | Medium | 2017-01-07 | 2012-03-13 | View | |
| 88231 | CVE-2017-9814 | cairo-truetype-subset.c in cairo 1.15.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) because of mishandling of an unexpected malloc(0) call. | 2017-07-18 | 2017-07-17 | View | ||||
| 86022 | CVE-2017-7475 | Cairo version 1.15.4 is vulnerable to a NULL pointer dereference related to the FT_Load_Glyph and FT_Render_Glyph resulting in an application crash. | 2 | 4.3 | Medium | 2017-06-03 | 2017-05-30 | View | |
| 64814 | CVE-2006-6253 | Cahier de texte 2.0 stores sensitive information under the web root, possibly with insufficient access control, which might allow remote attackers to obtain all users" passwords via a direct request for administration/dump.sql. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 15380 of 17672, showing 5 records out of 88360 total, starting on record 76896, ending on 76900