NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
9425  CVE-2011-2688  SQL injection vulnerability in mysql/mysql-auth.pl in the mod_authnz_external module 3.2.5 and earlier for the Apache HTTP Server allows remote attackers to execute arbitrary SQL commands via the user field.    7.5  High  2017-01-07  2011-08-11  View
9424  CVE-2011-2687  Drupal 7.x before 7.3 allows remote attackers to bypass intended node_access restrictions via vectors related to a listing that shows nodes but lacks a JOIN clause for the node table.    7.5  High  2017-01-07  2015-09-03  View
9423  CVE-2011-2686  Ruby before 1.8.7-p352 does not reset the random seed upon forking, which makes it easier for context-dependent attackers to predict the values of random numbers by leveraging knowledge of the number sequence obtained in a different child process, a related issue to CVE-2003-0900. NOTE: this issue exists because of a regression during Ruby 1.8.6 development.    Medium  2017-01-07  2011-08-11  View
9422  CVE-2011-2685  Stack-based buffer overflow in the Lotus Word Pro import filter in LibreOffice before 3.3.3 allows remote attackers to execute arbitrary code via a crafted .lwp file.    9.3  High  2017-01-07  2012-01-18  View
9421  CVE-2011-2682  The Login component in IBM Rational DOORS Web Access 1.4.x before 1.4.0.4 allows remote authenticated users to cause a denial of service (license consumption) by trying to login to DOORS Web Access with a new user account that has never been used for a DOORS login.    Medium  2017-01-07  2011-09-06  View

Page 15788 of 17672, showing 5 records out of 88360 total, starting on record 78936, ending on 78940

Actions