NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
11003 | CVE-2011-4616 | Cross-site scripting (XSS) vulnerability in the HTML-Template-Pro module before 0.9507 for Perl allows remote attackers to inject arbitrary web script or HTML via template parameters, related to improper handling of > (greater than) and < (less than) characters. | 2 | 4.3 | Medium | 2017-01-07 | 2013-04-04 | View | |
11259 | CVE-2011-4961 | SilverStripe 2.3.x before 2.3.12 and 2.4.x before 2.4.6 allows remote authenticated users with the EDIT_PERMISSIONS permission to gain administrator privileges via a TreeMultiselectField that includes admin groups when adding a user to the selected groups. | 2 | 6 | Medium | 2017-01-07 | 2012-10-15 | View | |
11515 | CVE-2011-5259 | SQL injection vulnerability in lib/controllers/CentralController.php in OrangeHRM before 2.6.11.2 allows remote attackers to execute arbitrary SQL commands via the id parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2013-02-13 | View | |
12027 | CVE-2010-0472 | kuddb2 in Tivoli Monitoring for DB2, as distributed in IBM DB2 9.7 FP1 on Linux, allows remote attackers to cause a denial of service (daemon crash) via a certain byte sequence. | 2 | 5 | Medium | 2017-01-18 | 2012-01-26 | View | |
77563 | CVE-2001-0083 | Windows Media Unicast Service in Windows Media Services 4.0 and 4.1 does not properly shut down some types of connections, producing a memory leak that allows remote attackers to cause a denial of service via a series of severed connections, aka the "Severed Windows Media Server Connection" vulnerability. | 2 | 5 | Medium | 2017-01-05 | 2008-09-10 | View |
Page 17506 of 17672, showing 5 records out of 88360 total, starting on record 87526, ending on 87530