NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 10875 | CVE-2011-4436 | Multiple cross-site scripting (XSS) vulnerabilities in the administrative web interface on the Dell KACE K2000 System Deployment Appliance allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 3.5 | Low | 2017-01-07 | 2011-11-14 | View | |
| 10874 | CVE-2011-4435 | The web-server component in the Consolidation and Analysis Engine (CAE) Server in DB2 Query Monitor in IBM DB2 Tools 2.3.0 for z/OS does not prevent directory browsing, which allows remote attackers to obtain sensitive information via HTTP requests. | 2 | 5 | Medium | 2017-01-07 | 2011-12-12 | View | |
| 10873 | CVE-2011-4434 | Microsoft Windows Server 2008 R2 and R2 SP1 and Windows 7 Gold and SP1 do not properly enforce AppLocker rules, which allows local users to bypass intended access restrictions via a (1) macro or (2) scripting feature in an application, as demonstrated by Microsoft Office applications and the SANDBOX_INERT and LOAD_IGNORE_CODE_AUTHZ_LEVEL flags. | 2 | 3.6 | Low | 2017-01-07 | 2011-11-15 | View | |
| 10872 | CVE-2011-4433 | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2011. Notes: none. | 1 | 2017-01-07 | 2012-12-11 | View | |||
| 10871 | CVE-2011-4432 | www/include/configuration/nconfigObject/contact/DB-Func.php in Merethis Centreon before 2.3.2 does not use a salt during calculation of a password hash, which makes it easier for context-dependent attackers to determine cleartext passwords via a rainbow-table approach. | 2 | 5 | Medium | 2017-01-07 | 2012-02-13 | View |
Page 15498 of 17672, showing 5 records out of 88360 total, starting on record 77486, ending on 77490