NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
10823  CVE-2011-4362  Integer signedness error in the base64_decode function in the HTTP authentication functionality (http_auth.c) in lighttpd 1.4 before 1.4.30 and 1.5 before SVN revision 2806 allows remote attackers to cause a denial of service (segmentation fault) via crafted base64 input that triggers an out-of-bounds read with a negative index.    Medium  2017-01-07  2012-11-06  View
11079  CVE-2011-4729  The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 does not include the HTTPOnly flag in a Set-Cookie header for a cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie, as demonstrated by cookies used by login_up.php3 and certain other files.    Medium  2017-01-07  2012-02-16  View
11335  CVE-2011-5075  translate.php in Support Incident Tracker (aka SiT!) 3.45 through 3.65 allows remote attackers to obtain sensitive information via a direct request using the save action, which reveals the installation path.    Medium  2017-01-07  2012-02-02  View
76871  CVE-2000-0630  IIS 4.0 and 5.0 allows remote attackers to obtain fragments of source code by appending a +.htr to the URL, a variant of the "File Fragment Reading via .HTR" vulnerability.    Medium  2017-01-05  2008-09-10  View
77127  CVE-2000-0893  The presence of the Distributed GL Daemon (dgld) service on port 5232 on SGI IRIX systems allows remote attackers to identify the target host as an SGI system.    Medium  2017-01-05  2008-09-05  View

Page 2566 of 17672, showing 5 records out of 88360 total, starting on record 12826, ending on 12830

Actions