NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
10291 | CVE-2011-3719 | CodeIgniter 1.7.2 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by system/scaffolding/views/view.php and certain other files. | 2 | 5 | Medium | 2017-01-07 | 2012-03-13 | View | |
75827 | CVE-1999-1177 | Directory traversal vulnerability in nph-publish before 1.2 allows remote attackers to overwrite arbitrary files via a .. (dot dot) in the pathname for an upload operation. | 2 | 5 | Medium | 2017-01-05 | 2008-09-10 | View | |
10547 | CVE-2011-3993 | SKYARC MTCMS before 5.252, and the MultiFileUploader 0.44 and earlier, DuplicateEntry 1.2 and earlier, MailPack 1.741 and earlier, and AutoTagging 0.08 and earlier plugins for Movable Type, uses weak permissions, which allows remote authenticated users to modify files and settings via unspecified vectors. | 2 | 5.5 | Medium | 2017-01-07 | 2011-11-16 | View | |
11059 | CVE-2011-4707 | Multiple cross-site scripting (XSS) vulnerabilities in the Virus Scan Interface in SAP Netweaver allow remote attackers to inject arbitrary web script or HTML via the (1) instname parameter to the VsiTestScan servlet and (2) name parameter to the VsiTestServlet servlet. | 2 | 4.3 | Medium | 2017-01-07 | 2011-12-09 | View | |
11315 | CVE-2011-5055 | MaraDNS 1.3.07.12 and 1.4.08 computes hash values for DNS data without properly restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU consumption) by sending many crafted queries with the Recursion Desired (RD) bit set. NOTE: this issue exists because of an incomplete fix for CVE-2012-0024. | 2 | 5 | Medium | 2017-01-07 | 2012-01-09 | View |
Page 1842 of 17672, showing 5 records out of 88360 total, starting on record 9206, ending on 9210