NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
8810 | CVE-2011-1938 | Stack-based buffer overflow in the socket_connect function in ext/sockets/sockets.c in PHP 5.3.3 through 5.3.6 might allow context-dependent attackers to execute arbitrary code via a long pathname for a UNIX socket. | 2 | 7.5 | High | 2017-01-07 | 2016-08-22 | View | |
8809 | CVE-2011-1937 | Cross-site scripting (XSS) vulnerability in Webmin 1.540 and earlier allows local users to inject arbitrary web script or HTML via a chfn command that changes the real (aka Full Name) field, related to useradmin/index.cgi and useradmin/user-lib.pl. | 2 | 4.3 | Medium | 2017-01-07 | 2011-09-21 | View | |
8808 | CVE-2011-1936 | Xen, when using x86 Intel processors and the VMX virtualization extension is enabled, does not properly handle cpuid instruction emulation when exiting the VM, which allows local guest users to cause a denial of service (guest crash) via unspecified vectors. | 2 | 4.6 | Medium | 2017-01-07 | 2014-02-25 | View | |
8807 | CVE-2011-1932 | Directory traversal vulnerability in io/filesystem/filesystem.cc in Widelands before 15.1 might allow remote attackers to overwrite arbitrary files via . (dot) characters in a pathname that is used for a file transfer in an Internet game. | 2 | 6.4 | Medium | 2017-01-07 | 2011-12-08 | View | |
8806 | CVE-2011-1931 | sp5xdec.c in the Sunplus SP5X JPEG decoder in libavcodec in FFmpeg before 0.6.3 and libav through 0.6.2, as used in VideoLAN VLC media player 1.1.9 and earlier and other products, performs a write operation outside the bounds of an unspecified array, which allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a malformed AMV file. | 2 | 6.8 | Medium | 2017-01-07 | 2011-09-21 | View |
Page 15911 of 17672, showing 5 records out of 88360 total, starting on record 79551, ending on 79555