NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
10401  CVE-2011-3829  ftp_upload_file.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated users to obtain sensitive information via the file name, which reveals the installation path in an error message.    Medium  2017-01-07  2012-02-02  View
10402  CVE-2011-3830  Cross-site scripting (XSS) vulnerability in search.php in Support Incident Tracker (aka SiT!) 3.65 allows remote attackers to inject arbitrary web script or HTML via the search_string parameter.    4.3  Medium  2017-01-07  2012-02-02  View
10403  CVE-2011-3831  SQL injection vulnerability in incident_attachments.php in Support Incident Tracker (aka SiT!) 3.65 allows remote attackers to execute arbitrary SQL commands via an uploaded file with a crafted file name.    7.5  High  2017-01-07  2012-02-02  View
10404  CVE-2011-3832  Eval injection vulnerability in config.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated administrators to execute arbitrary PHP code via the application_name parameter in a save action.    6.5  Medium  2017-01-07  2012-02-02  View
10405  CVE-2011-3833  Unrestricted file upload vulnerability in ftp_upload_file.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated users to execute arbitrary PHP code by uploading a PHP file, then accessing it via a direct request to the file in an unspecified directory.    Medium  2017-01-07  2012-02-02  View

Page 2081 of 17672, showing 5 records out of 88360 total, starting on record 10401, ending on 10405

Actions