NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
9496 | CVE-2011-2766 | The FCGI (aka Fast CGI) module 0.70 through 0.73 for Perl, as used by CGI::Fast, uses environment variable values from one request during processing of a later request, which allows remote attackers to bypass authentication via crafted HTTP headers. | 2 | 7.5 | High | 2017-01-07 | 2012-11-05 | View | |
9497 | CVE-2011-2768 | Tor before 0.2.2.34, when configured as a client or bridge, sends a TLS certificate chain as part of an outgoing OR connection, which allows remote relays to bypass intended anonymity properties by reading this chain and then determining the set of entry guards that the client or bridge had selected. | 2 | 5.8 | Medium | 2017-01-07 | 2012-01-18 | View | |
9498 | CVE-2011-2769 | Tor before 0.2.2.34, when configured as a bridge, accepts the CREATE and CREATE_FAST values in the Command field of a cell within an OR connection that it initiated, which allows remote relays to enumerate bridges by using these values. | 2 | 4.3 | Medium | 2017-01-07 | 2012-01-18 | View | |
9499 | CVE-2011-2770 | Cross-site scripting (XSS) vulnerability in man2html.cgi.c in man2html 1.6, and possibly other version, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to error messages. | 2 | 4.3 | Medium | 2017-01-07 | 2011-11-21 | View | |
9500 | CVE-2011-2771 | Multiple cross-site scripting (XSS) vulnerabilities in Mahara before 1.4.1 allow remote attackers to inject arbitrary web script or HTML via vectors related to (1) URI attributes and (2) the External Feed component, as demonstrated by the guid element in an RSS feed. | 2 | 4.3 | Medium | 2017-01-07 | 2011-11-15 | View |
Page 1900 of 17672, showing 5 records out of 88360 total, starting on record 9496, ending on 9500