NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 10823 | CVE-2011-4362 | Integer signedness error in the base64_decode function in the HTTP authentication functionality (http_auth.c) in lighttpd 1.4 before 1.4.30 and 1.5 before SVN revision 2806 allows remote attackers to cause a denial of service (segmentation fault) via crafted base64 input that triggers an out-of-bounds read with a negative index. | 2 | 5 | Medium | 2017-01-07 | 2012-11-06 | View | |
| 11079 | CVE-2011-4729 | The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 does not include the HTTPOnly flag in a Set-Cookie header for a cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie, as demonstrated by cookies used by login_up.php3 and certain other files. | 2 | 5 | Medium | 2017-01-07 | 2012-02-16 | View | |
| 11335 | CVE-2011-5075 | translate.php in Support Incident Tracker (aka SiT!) 3.45 through 3.65 allows remote attackers to obtain sensitive information via a direct request using the save action, which reveals the installation path. | 2 | 5 | Medium | 2017-01-07 | 2012-02-02 | View | |
| 76871 | CVE-2000-0630 | IIS 4.0 and 5.0 allows remote attackers to obtain fragments of source code by appending a +.htr to the URL, a variant of the "File Fragment Reading via .HTR" vulnerability. | 2 | 5 | Medium | 2017-01-05 | 2008-09-10 | View | |
| 77127 | CVE-2000-0893 | The presence of the Distributed GL Daemon (dgld) service on port 5232 on SGI IRIX systems allows remote attackers to identify the target host as an SGI system. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View |
Page 2566 of 17672, showing 5 records out of 88360 total, starting on record 12826, ending on 12830