NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
9510 | CVE-2011-2783 | Google Chrome before 13.0.782.107 does not ensure that developer-mode NPAPI extension installations are confirmed by a browser dialog, which makes it easier for remote attackers to modify the product"s functionality via a Trojan horse extension. | 2 | 6.4 | Medium | 2017-01-07 | 2012-01-26 | View | |
9509 | CVE-2011-2782 | The drag-and-drop implementation in Google Chrome before 13.0.782.107 on Linux does not properly enforce permissions for files, which allows user-assisted remote attackers to bypass intended access restrictions via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-07 | 2012-01-26 | View | |
9508 | CVE-2011-2780 | Directory traversal vulnerability in includes/lib/gz.php in Chyrp 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter, a different vulnerability than CVE-2011-2744. | 2 | 5 | Medium | 2017-01-07 | 2011-09-21 | View | |
9507 | CVE-2011-2779 | Windows Event Log SmartConnector in HP ArcSight Connector Appliance before 6.1 uses world-writable permissions for exported report files, which allows local users to change or delete log data by modifying a file, a different vulnerability than CVE-2011-0770. | 2 | 3.6 | Low | 2017-01-07 | 2011-08-10 | View | |
9506 | CVE-2011-2778 | Multiple heap-based buffer overflows in Tor before 0.2.2.35 allow remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code by (1) establishing a SOCKS connection to SocksPort or (2) leveraging a SOCKS proxy configuration. | 2 | 7.6 | High | 2017-01-07 | 2012-01-18 | View |
Page 15771 of 17672, showing 5 records out of 88360 total, starting on record 78851, ending on 78855