NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
8046 | CVE-2011-1064 | SQL injection vulnerability in member/list.php in qibosoft Qi Bo CMS 7 allows remote attackers to execute arbitrary SQL commands via the aidDB[] parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2011-04-21 | View | |
8047 | CVE-2011-1065 | Multiple stack-based buffer overflows in the PIPIWebPlayer ActiveX control (PIWebPlayer.ocx) in PIPI Player 2.8.0.0 allow remote attackers to execute arbitrary code via long arguments to the (1) PlayURL or (2) PlayURLWithLocalPlayer methods. | 2 | 9.3 | High | 2017-01-07 | 2011-04-21 | View | |
8048 | CVE-2011-1066 | Cross-site scripting (XSS) vulnerability in the Messaging module 6.x-2.x before 6.x-2.4 and 6.x-4.x before 6.x-4.0-beta8 for Drupal allows remote attackers with administer messaging permissions to inject arbitrary web script or HTML via unspecified vectors. | 2 | 2.6 | Low | 2017-01-07 | 2011-03-10 | View | |
8049 | CVE-2011-1067 | slapd (aka ns-slapd) in 389 Directory Server before 1.2.8.a2 does not properly manage the c_timelimit field of the connection table element, which allows remote attackers to cause a denial of service (daemon outage) via Simple Paged Results connections, as demonstrated by using multiple processes to replay TCP sessions, a different vulnerability than CVE-2011-0019. | 2 | 5 | Medium | 2017-01-07 | 2011-03-10 | View | |
8050 | CVE-2011-1068 | Microsoft Windows Azure Software Development Kit (SDK) 1.3.x before 1.3.20121.1237, when Full IIS and a Web Role are used with an ASP.NET application, does not properly support the use of cookies for maintaining state, which allows remote attackers to obtain potentially sensitive information by reading an encrypted cookie and performing unspecified other steps. | 2 | 2.6 | Low | 2017-01-07 | 2011-04-21 | View |
Page 1610 of 17672, showing 5 records out of 88360 total, starting on record 8046, ending on 8050