NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
11566  CVE-2011-5314  templates/default/index.php in Redaxscript 0.3.2 allows remote attackers to obtain sensitive information via a direct request, which reveals the full path in an error message.    Medium  2017-01-07  2015-01-02  View
11567  CVE-2011-5315  Cross-site request forgery (CSRF) vulnerability in admin/index.php in whCMS 0.115 alpha allows remote attackers to hijack the authentication of administrators for requests that modify credentials via a user save action.    6.8  Medium  2017-01-07  2015-01-02  View
11568  CVE-2011-5316  Cross-site request forgery (CSRF) vulnerability in admin/index.php in Cambio 0.5a nightly r37 allows remote attackers to hijack the authentication of administrators for requests that modify credentials via a user save action.    6.8  Medium  2017-01-07  2015-01-02  View
11569  CVE-2011-5317  Cross-site scripting (XSS) vulnerability in editText.php in WonderCMS before 0.4 allows remote attackers to inject arbitrary web script or HTML via the content parameter.    4.3  Medium  2017-01-07  2015-01-02  View
11570  CVE-2011-5318  Multiple cross-site request forgery (CSRF) vulnerabilities in diafan.CMS before 5.1 allow remote attackers to hijack the authentication of administrators for requests that (1) modify articles via a save_post action to admin/news/saveNEWS_ID/, (2) modify settings via a save_post action to admin/site/save2/, or (3) modify credentials via a save_post action to admin/usersite/save2/.    6.8  Medium  2017-01-07  2015-01-02  View

Page 2314 of 17672, showing 5 records out of 88360 total, starting on record 11566, ending on 11570

Actions