NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
9500 | CVE-2011-2771 | Multiple cross-site scripting (XSS) vulnerabilities in Mahara before 1.4.1 allow remote attackers to inject arbitrary web script or HTML via vectors related to (1) URI attributes and (2) the External Feed component, as demonstrated by the guid element in an RSS feed. | 2 | 4.3 | Medium | 2017-01-07 | 2011-11-15 | View | |
9499 | CVE-2011-2770 | Cross-site scripting (XSS) vulnerability in man2html.cgi.c in man2html 1.6, and possibly other version, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to error messages. | 2 | 4.3 | Medium | 2017-01-07 | 2011-11-21 | View | |
9498 | CVE-2011-2769 | Tor before 0.2.2.34, when configured as a bridge, accepts the CREATE and CREATE_FAST values in the Command field of a cell within an OR connection that it initiated, which allows remote relays to enumerate bridges by using these values. | 2 | 4.3 | Medium | 2017-01-07 | 2012-01-18 | View | |
9497 | CVE-2011-2768 | Tor before 0.2.2.34, when configured as a client or bridge, sends a TLS certificate chain as part of an outgoing OR connection, which allows remote relays to bypass intended anonymity properties by reading this chain and then determining the set of entry guards that the client or bridge had selected. | 2 | 5.8 | Medium | 2017-01-07 | 2012-01-18 | View | |
9496 | CVE-2011-2766 | The FCGI (aka Fast CGI) module 0.70 through 0.73 for Perl, as used by CGI::Fast, uses environment variable values from one request during processing of a later request, which allows remote attackers to bypass authentication via crafted HTTP headers. | 2 | 7.5 | High | 2017-01-07 | 2012-11-05 | View |
Page 15773 of 17672, showing 5 records out of 88360 total, starting on record 78861, ending on 78865