NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
9425 | CVE-2011-2688 | SQL injection vulnerability in mysql/mysql-auth.pl in the mod_authnz_external module 3.2.5 and earlier for the Apache HTTP Server allows remote attackers to execute arbitrary SQL commands via the user field. | 2 | 7.5 | High | 2017-01-07 | 2011-08-11 | View | |
9424 | CVE-2011-2687 | Drupal 7.x before 7.3 allows remote attackers to bypass intended node_access restrictions via vectors related to a listing that shows nodes but lacks a JOIN clause for the node table. | 2 | 7.5 | High | 2017-01-07 | 2015-09-03 | View | |
9423 | CVE-2011-2686 | Ruby before 1.8.7-p352 does not reset the random seed upon forking, which makes it easier for context-dependent attackers to predict the values of random numbers by leveraging knowledge of the number sequence obtained in a different child process, a related issue to CVE-2003-0900. NOTE: this issue exists because of a regression during Ruby 1.8.6 development. | 2 | 5 | Medium | 2017-01-07 | 2011-08-11 | View | |
9422 | CVE-2011-2685 | Stack-based buffer overflow in the Lotus Word Pro import filter in LibreOffice before 3.3.3 allows remote attackers to execute arbitrary code via a crafted .lwp file. | 2 | 9.3 | High | 2017-01-07 | 2012-01-18 | View | |
9421 | CVE-2011-2682 | The Login component in IBM Rational DOORS Web Access 1.4.x before 1.4.0.4 allows remote authenticated users to cause a denial of service (license consumption) by trying to login to DOORS Web Access with a new user account that has never been used for a DOORS login. | 2 | 4 | Medium | 2017-01-07 | 2011-09-06 | View |
Page 15788 of 17672, showing 5 records out of 88360 total, starting on record 78936, ending on 78940