NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
9260 | CVE-2011-2481 | Apache Tomcat 7.0.x before 7.0.17 permits web applications to replace an XML parser used for other web applications, which allows local users to read or modify the (1) web.xml, (2) context.xml, or (3) tld files of arbitrary web applications via a crafted application that is loaded earlier than the target application. NOTE: this vulnerability exists because of a CVE-2009-0783 regression. | 2 | 4.6 | Medium | 2017-05-27 | 2017-05-22 | View | |
9259 | CVE-2011-2479 | The Linux kernel before 2.6.39 does not properly create transparent huge pages in response to a MAP_PRIVATE mmap system call on /dev/zero, which allows local users to cause a denial of service (system crash) via a crafted application. | 2 | 4.9 | Medium | 2017-01-07 | 2013-03-04 | View | |
9258 | CVE-2011-2478 | Google SketchUp before 8 does not properly handle edge geometry in SketchUp (aka .SKP) files, which allows remote attackers to execute arbitrary code via a crafted file. | 2 | 9.3 | High | 2017-01-07 | 2012-04-18 | View | |
9257 | CVE-2011-2477 | Multiple cross-site scripting (XSS) vulnerabilities in config.c in config.cgi in Icinga before 1.4.1, when escape_html_tags is disabled, allow remote attackers to inject arbitrary web script or HTML via a JavaScript expression, as demonstrated by the onload attribute of a BODY element located after a check-host-alive! sequence, a different vulnerability than CVE-2011-2179. | 2 | 2.6 | Low | 2017-01-07 | 2011-09-06 | View | |
9256 | CVE-2011-2476 | Cross-site scripting (XSS) vulnerability in Coppermine Photo Gallery (CPG) before 1.5.12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2010-4667. | 2 | 4.3 | Medium | 2017-01-07 | 2011-09-06 | View |
Page 15821 of 17672, showing 5 records out of 88360 total, starting on record 79101, ending on 79105