NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
9675 | CVE-2011-2977 | Bugzilla 3.6.x before 3.6.6, 3.7.x, 4.0.x before 4.0.2, and 4.1.x before 4.1.3 on Windows does not delete the temporary files associated with uploaded attachments, which allows local users to obtain sensitive information by reading these files. NOTE: this issue exists because of a regression in 3.6. | 2 | 2.1 | Low | 2017-01-07 | 2012-08-02 | View | |
9674 | CVE-2011-2976 | Cross-site scripting (XSS) vulnerability in Bugzilla 2.16rc1 through 2.22.7, 3.0.x through 3.3.x, and 3.4.x before 3.4.12 allows remote attackers to inject arbitrary web script or HTML via vectors involving a BUGLIST cookie. | 2 | 4.3 | Medium | 2017-01-07 | 2012-08-02 | View | |
9673 | CVE-2011-2975 | Double free vulnerability in the msAddImageSymbol function in mapsymbol.c in MapServer before 6.0.1 might allow remote attackers to cause a denial of service (application crash) or have unspecified other impact via crafted mapfile data. | 2 | 6.8 | Medium | 2017-01-07 | 2011-08-05 | View | |
9672 | CVE-2011-2964 | foomaticrip.c in foomatic-rip in foomatic-filters in Foomatic 4.0.6 allows remote attackers to execute arbitrary code via a crafted *FoomaticRIPCommandLine field in a .ppd file, a different vulnerability than CVE-2011-2697. | 2 | 6.8 | Medium | 2017-01-07 | 2013-05-29 | View | |
9671 | CVE-2011-2963 | TCPUploadServer.exe in Progea Movicon 11.2 before Build 1084 does not require authentication for critical functions, which allows remote attackers to obtain sensitive information, delete files, execute arbitrary programs, or cause a denial of service (crash) via a crafted packet to TCP port 10651. | 2 | 10 | High | 2017-01-07 | 2011-08-01 | View |
Page 15738 of 17672, showing 5 records out of 88360 total, starting on record 78686, ending on 78690