NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
75828  CVE-1999-1178  Sambar Server 4.1 beta allows remote attackers to obtain sensitive information about the server via an HTTP request for the dumpenv.pl script.    Medium  2017-01-05  2008-09-05  View
10548  CVE-2011-3994  Cross-site request forgery (CSRF) vulnerability in SKYARC MTCMS before 5.252, and the MultiFileUploader 0.44 and earlier, DuplicateEntry 1.2 and earlier, MailPack 1.741 and earlier, and AutoTagging 0.08 and earlier plugins for Movable Type, allows remote attackers to hijack the authentication of arbitrary users for requests that modify data.    6.8  Medium  2017-01-07  2011-11-16  View
76084  CVE-1999-1434  login in Slackware Linux 3.2 through 3.5 does not properly check for an error when the /etc/group file is missing, which prevents it from dropping privileges, causing it to assign root privileges to any local user who logs on to the server.    7.2  High  2017-01-05  2016-10-17  View
10804  CVE-2011-4341  Multiple SQL injection vulnerabilities in symphony/content/content.publish.php in Symphony CMS 2.2.3 and possibly other versions before 2.2.4 allow remote authenticated users with Author permissions to execute arbitrary SQL commands via the filter parameter to (1) symphony/publish/comments or (2) symphony/publish/images. NOTE: this issue can be leveraged to perform cross-site scripting (XSS) attacks via error messages. NOTE: some of these details are obtained from third party information.    4.3  Medium  2017-01-07  2012-02-13  View
76340  CVE-2000-0097  The WebHits ISAPI filter in Microsoft Index Server allows remote attackers to read arbitrary files, aka the "Malformed Hit-Highlighting Argument" vulnerability.    Medium  2017-01-05  2008-09-10  View

Page 3141 of 17672, showing 5 records out of 88360 total, starting on record 15701, ending on 15705

Actions