NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
8820 | CVE-2011-1950 | plone.app.users in Plone 4.0 and 4.1 allows remote authenticated users to modify the properties of arbitrary accounts via unspecified vectors, as exploited in the wild in June 2011. | 2 | 5.5 | Medium | 2017-01-07 | 2011-09-21 | View | |
8819 | CVE-2011-1949 | Cross-site scripting (XSS) vulnerability in the safe_html filter in Products.PortalTransforms in Plone 2.1 through 4.1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2010-2422. | 2 | 3.5 | Low | 2017-01-07 | 2011-09-21 | View | |
8818 | CVE-2011-1948 | Cross-site scripting (XSS) vulnerability in Plone 4.1 and earlier allows remote attackers to inject arbitrary web script or HTML via a crafted URL. | 2 | 4.3 | Medium | 2017-01-07 | 2011-09-21 | View | |
8817 | CVE-2011-1947 | fetchmail 5.9.9 through 6.3.19 does not properly limit the wait time after issuing a (1) STARTTLS or (2) STLS request, which allows remote servers to cause a denial of service (application hang) by acknowledging the request but not sending additional packets. | 2 | 5 | Medium | 2017-01-07 | 2011-09-06 | View | |
8816 | CVE-2011-1946 | gnomesu-pam-backend in libgnomesu 1.0.0 prints an error message but proceeds with the non-error code path upon failure of the setgid or setuid function, which allows local users to gain privileges by leveraging access to two unprivileged user accounts, and running many processes under one of these accounts. | 2 | 7.2 | High | 2017-01-07 | 2011-07-08 | View |
Page 15909 of 17672, showing 5 records out of 88360 total, starting on record 79541, ending on 79545