NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
10195  CVE-2011-3580  IceWarp WebMail in IceWarp Mail Server before 10.3.3 allows remote attackers to obtain configuration information via a direct request to the /server URI, which triggers a call to the phpinfo function.    Medium  2017-01-07  2012-02-13  View
10194  CVE-2011-3579  server/webmail.php in IceWarp WebMail in IceWarp Mail Server before 10.3.3 allows remote attackers to read arbitrary files, and possibly send HTTP requests to intranet servers or cause a denial of service (CPU and memory consumption), via an XML external entity declaration in conjunction with an entity reference.    6.4  Medium  2017-01-07  2012-02-13  View
10193  CVE-2011-3578  Cross-site scripting (XSS) vulnerability in bug_actiongroup_ext_page.php in MantisBT before 1.2.8 allows remote attackers to inject arbitrary web script or HTML via the action parameter, related to bug_actiongroup_page.php, a different vulnerability than CVE-2011-3357.    4.3  Medium  2017-01-07  2013-08-26  View
10192  CVE-2011-3577  IBM WebSphere Commerce 6.x through 6.0.0.11 and 7.x through 7.0.0.3 does not properly implement Activity Token authentication for Web Services, which has unspecified impact and attack vectors.    10  High  2017-01-07  2012-05-31  View
10191  CVE-2011-3576  Cross-site scripting (XSS) vulnerability in IBM Lotus Domino 8.5.2 allows remote attackers to inject arbitrary web script or HTML via the PanelIcon parameter in an fmpgPanelHeader ReadForm action to WebAdmin.nsf.    4.3  Medium  2017-01-07  2011-09-22  View

Page 15634 of 17672, showing 5 records out of 88360 total, starting on record 78166, ending on 78170

Actions