NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
8433 | CVE-2011-1502 | Liferay Portal Community Edition (CE) 6.x before 6.0.6 GA, when Apache Tomcat is used, allows remote authenticated users to read arbitrary files via an entity declaration in conjunction with an entity reference, related to an XML External Entity (aka XXE) issue. | 2 | 4 | Medium | 2017-01-07 | 2011-05-31 | View | |
73969 | CVE-2003-0874 | Multiple SQL injection vulnerabilities in DeskPRO 1.1.0 and earlier allow remote attackers to insert arbitrary SQL and conduct unauthorized activities via (1) the cat parameter in faq.php, (2) the article parameter in faq.php, (3) the tickedid parameter in view.php, and (4) the Password entry on the logon screen. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
8689 | CVE-2011-1808 | Use-after-free vulnerability in Google Chrome before 12.0.742.91 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to incorrect integer calculations during float handling. | 2 | 7.5 | High | 2017-01-07 | 2012-01-26 | View | |
74225 | CVE-2003-1153 | byteHoard 0.7 and 0.71 allows remote attackers to list arbitrary files and directories via a direct request to files.inc.php. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
8945 | CVE-2011-2123 | Integer overflow in the Shockwave 3D Asset x32 component in Adobe Shockwave Player before 11.6.0.626 allows remote attackers to execute arbitrary code via a crafted subrecord in a DEMX chunk, which triggers a heap-based buffer overflow. | 2 | 9.3 | High | 2017-01-07 | 2011-10-11 | View |
Page 16315 of 17672, showing 5 records out of 88360 total, starting on record 81571, ending on 81575