NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
8996 | CVE-2011-2175 | Integer underflow in the visual_read function in wiretap/visual.c in Wireshark 1.2.x before 1.2.17 and 1.4.x before 1.4.7 allows remote attackers to cause a denial of service (application crash) via a malformed Visual Networks file that triggers a heap-based buffer over-read. | 2 | 4.3 | Medium | 2017-01-07 | 2013-02-06 | View | |
8997 | CVE-2011-2176 | GNOME NetworkManager before 0.8.6 does not properly enforce the auth_admin element in PolicyKit, which allows local users to bypass intended wireless network sharing restrictions via unspecified vectors. | 2 | 2.1 | Low | 2017-01-07 | 2012-01-18 | View | |
8998 | CVE-2011-2178 | The virSecurityManagerGetPrivateData function in security/security_manager.c in libvirt 0.8.8 through 0.9.1 uses the wrong argument for a sizeof call, which causes incorrect processing of "security manager private data" that "reopens disk probing" and might allow guest OS users to read arbitrary files on the host OS. NOTE: this vulnerability exists because of a CVE-2010-2238 regression. | 2 | 4.4 | Medium | 2017-01-07 | 2012-08-02 | View | |
8999 | CVE-2011-2179 | Multiple cross-site scripting (XSS) vulnerabilities in config.c in config.cgi in (1) Nagios 3.2.3 and (2) Icinga before 1.4.1 allow remote attackers to inject arbitrary web script or HTML via the expand parameter, as demonstrated by an (a) command action or a (b) hosts action. | 2 | 4.3 | Medium | 2017-01-07 | 2011-11-21 | View | |
9000 | CVE-2011-2180 | Cross-site scripting (XSS) vulnerability in dereferer.php in A Really Simple Chat (ARSC) 3.3-rc2 allows remote attackers to inject arbitrary web script or HTML via the arsc_link parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2011-06-30 | View |
Page 1800 of 17672, showing 5 records out of 88360 total, starting on record 8996, ending on 9000