NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 11170 | CVE-2011-4832 | Directory traversal vulnerability in CaupoShop Pro 2.x, CaupoShop Classic 3.01, and CaupoShop Pro 3.70 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the template parameter in a template action. | 2 | 7.5 | High | 2017-01-07 | 2011-12-15 | View | |
| 11169 | CVE-2011-4831 | Directory traversal vulnerability in webFileBrowser.php in Web File Browser 0.4b14 allows remote authenticated users to read arbitrary files via a ..%2f (encoded dot dot) in the file parameter in a download action. | 2 | 4 | Medium | 2017-01-07 | 2012-02-09 | View | |
| 11168 | CVE-2011-4830 | Multiple cross-site scripting (XSS) vulnerabilities in the com_listing component in Barter Sites component 1.3 for Joomla! allow remote authenticated users to inject arbitrary web script or HTML via the (1) listing_title, (2) description, (3) homeurl (aka Website Address), (4) paystring (aka Payment types accepted), (5) sell_price, (6) shipping_cost, and (7) quantity parameters to index.php. | 2 | 3.5 | Low | 2017-01-07 | 2011-12-15 | View | |
| 11167 | CVE-2011-4829 | SQL injection vulnerability in the com_listing component in Barter Sites component 1.3 for Joomla! allows remote attackers to execute arbitrary SQL commands via the category_id parameter to index.php. | 2 | 7.5 | High | 2017-01-07 | 2011-12-15 | View | |
| 11166 | CVE-2011-4828 | Unrestricted file upload vulnerability in includes/inline_image_upload.php in AutoSec Tools V-CMS 1.0 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in temp/. | 2 | 7.5 | High | 2017-01-07 | 2011-12-15 | View |
Page 15439 of 17672, showing 5 records out of 88360 total, starting on record 77191, ending on 77195