NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
8155 | CVE-2011-1187 | Google Chrome before 10.0.648.127 allows remote attackers to bypass the Same Origin Policy via unspecified vectors, related to an "error message leak." | 2 | 5 | Medium | 2017-01-07 | 2013-09-13 | View | |
8154 | CVE-2011-1186 | Google Chrome before 10.0.648.127 on Linux does not properly handle parallel execution of calls to the print method, which might allow remote attackers to cause a denial of service (application crash) via crafted JavaScript code. | 2 | 5 | Medium | 2017-01-07 | 2012-03-22 | View | |
8153 | CVE-2011-1185 | Google Chrome before 10.0.648.127 does not prevent (1) navigation and (2) close operations on the top location of a sandboxed frame, which has unspecified impact and remote attack vectors. | 2 | 7.5 | High | 2017-01-07 | 2012-01-26 | View | |
8152 | CVE-2011-1184 | The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.12 does not have the expected countermeasures against replay attacks, which makes it easier for remote attackers to bypass intended access restrictions by sniffing the network for valid requests, related to lack of checking of nonce (aka server nonce) and nc (aka nonce-count or client nonce count) values. | 2 | 5 | Medium | 2017-01-07 | 2016-08-22 | View | |
8151 | CVE-2011-1183 | Apache Tomcat 7.0.11, when web.xml has no login configuration, does not follow security constraints, which allows remote attackers to bypass intended access restrictions via HTTP requests to a meta-data complete web application. NOTE: this vulnerability exists because of an incorrect fix for CVE-2011-1088 and CVE-2011-1419. | 2 | 5.8 | Medium | 2017-01-07 | 2011-09-21 | View |
Page 16042 of 17672, showing 5 records out of 88360 total, starting on record 80206, ending on 80210