NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
8790 | CVE-2011-1911 | JasperServer in JasperReports Server Community Project 3.7.0 and 3.7.1 uses a predictable _flowExecutionKey parameter, which makes it easier for remote attackers to conduct cross-site request forgery (CSRF) attacks via a brute-force approach. | 2 | 6.8 | Medium | 2017-01-07 | 2012-05-31 | View | |
8789 | CVE-2011-1910 | Off-by-one error in named in ISC BIND 9.x before 9.7.3-P1, 9.8.x before 9.8.0-P2, 9.4-ESV before 9.4-ESV-R4-P1, and 9.6-ESV before 9.6-ESV-R4-P1 allows remote DNS servers to cause a denial of service (assertion failure and daemon exit) via a negative response containing large RRSIG RRsets. | 2 | 5 | Medium | 2017-01-07 | 2016-04-04 | View | |
8788 | CVE-2011-1908 | Integer overflow in the Type 1 font decoder in the FreeType engine in Foxit Reader before 4.0.0.0619 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted font in a PDF document. | 2 | 9.3 | High | 2017-01-07 | 2016-11-08 | View | |
8787 | CVE-2011-1907 | ISC BIND 9.8.x before 9.8.0-P1, when Response Policy Zones (RPZ) RRset replacement is enabled, allows remote attackers to cause a denial of service (assertion failure and daemon exit) via an RRSIG query. | 2 | 5 | Medium | 2017-01-07 | 2011-09-06 | View | |
8786 | CVE-2011-1906 | Trustwave WebDefend Enterprise before 5.0 7.01.903-1.4 stores specific user-account credentials in a MySQL database, which makes it easier for remote attackers to read the event collection table via requests to the management port, a different vulnerability than CVE-2011-0756. | 2 | 5 | Medium | 2017-01-07 | 2011-05-31 | View |
Page 15915 of 17672, showing 5 records out of 88360 total, starting on record 79571, ending on 79575