NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
8502  CVE-2011-1572  Directory traversal vulnerability in the Admin Defined Commands (ADC) feature in gitolite before 1.5.9.1 allows remote attackers to execute arbitrary commands via .. (dot dot) sequences in admin-defined commands.    6.8  Medium  2017-01-07  2012-05-14  View
74038  CVE-2003-0965  Cross-site scripting (XSS) vulnerability in the admin CGI script for Mailman before 2.1.4 allows remote attackers to steal session cookies and conduct unauthorized activities.    6.8  Medium  2017-07-18  2017-07-10  View
9014  CVE-2011-2197  The cross-site scripting (XSS) prevention feature in Ruby on Rails 2.x before 2.3.12, 3.0.x before 3.0.8, and 3.1.x before 3.1.0.rc2 does not properly handle mutation of safe buffers, which makes it easier for remote attackers to conduct XSS attacks via crafted strings to an application that uses a problematic string method, as demonstrated by the sub method.    4.3  Medium  2017-01-07  2012-07-06  View
74550  CVE-2003-1480  MySQL 3.20 through 4.1.0 uses a weak algorithm for hashed passwords, which makes it easier for attackers to decrypt the password via brute force methods.    4.3  Medium  2017-01-03  2008-09-05  View
75062  CVE-1999-0393  Remote attackers can cause a denial of service in Sendmail 8.8.x and 8.9.2 by sending messages with a large number of headers.    Medium  2017-01-05  2016-10-17  View

Page 1947 of 17672, showing 5 records out of 88360 total, starting on record 9731, ending on 9735

Actions