NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
9152  CVE-2011-2360  Google Chrome before 13.0.782.107 does not ensure that the user is prompted before download of a dangerous file, which makes it easier for remote attackers to bypass intended content restrictions via a crafted web site.    Medium  2017-01-07  2012-01-26  View
9408  CVE-2011-2666  The default configuration of the SIP channel driver in Asterisk Open Source 1.4.x through 1.4.41.2 and 1.6.2.x through 1.6.2.18.2 does not enable the alwaysauthreject option, which allows remote attackers to enumerate account names by making a series of invalid SIP requests and observing the differences in the responses for different usernames, a different vulnerability than CVE-2011-2536.    Medium  2017-01-07  2011-09-06  View
74944  CVE-1999-0275  Denial of service in Windows NT DNS servers by flooding port 53 with too many characters.    Medium  2017-01-05  2008-09-09  View
10432  CVE-2011-3864  Cross-site scripting (XSS) vulnerability in the The Erudite theme before 2.7.9 for WordPress allows remote attackers to inject arbitrary web script or HTML via the cpage parameter.    4.3  Medium  2017-01-07  2012-05-18  View
10688  CVE-2011-4173  Cross-site request forgery (CSRF) vulnerability in Simple Machines Forum (SMF) 2.x before 2.0.1 allows remote attackers to hijack the authentication of administrators or moderators via vectors involving image files, a different vulnerability than CVE-2011-3615. NOTE: some of these details are obtained from third party information.    6.8  Medium  2017-01-07  2011-10-25  View

Page 15412 of 17672, showing 5 records out of 88360 total, starting on record 77056, ending on 77060

Actions