NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
28547  CVE-2015-8379  CakePHP 2.x and 3.x before 3.1.5 might allow remote attackers to bypass the CSRF protection mechanism via the _method parameter.    6.8  Medium  2017-01-19  2016-01-27  View
10284  CVE-2011-3712  CakePHP 1.3.7 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by dispatcher.php and certain other files.    Medium  2017-01-07  2012-03-13  View
88231  CVE-2017-9814  cairo-truetype-subset.c in cairo 1.15.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) because of mishandling of an unexpected malloc(0) call.          2017-07-18  2017-07-17  View
86022  CVE-2017-7475  Cairo version 1.15.4 is vulnerable to a NULL pointer dereference related to the FT_Load_Glyph and FT_Render_Glyph resulting in an application crash.    4.3  Medium  2017-06-03  2017-05-30  View
64814  CVE-2006-6253  Cahier de texte 2.0 stores sensitive information under the web root, possibly with insufficient access control, which might allow remote attackers to obtain all users" passwords via a direct request for administration/dump.sql.    Medium  2016-12-20  2011-03-07  View

Page 15380 of 17672, showing 5 records out of 88360 total, starting on record 76896, ending on 76900

Actions