NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
46608  CVE-2012-5480  The Database activity module in Moodle 2.1.x before 2.1.9, 2.2.x before 2.2.6, and 2.3.x before 2.3.3 allows remote attackers to bypass intended restrictions on reading other participants" entries via an advanced search.    6.4  Medium  2017-01-19  2013-06-20  View
47120  CVE-2012-6339  Multiple cross-site scripting (XSS) vulnerabilities in the administrative web interface in Cerberus FTP Server before 5.0.6.0 allow (1) remote attackers to inject arbitrary web script or HTML via a log entry that is not properly handled within the Log Manager component, and might allow (2) remote authenticated administrators to inject arbitrary web script or HTML via a Messages field to the servermanager program.    4.3  Medium  2017-01-19  2012-12-31  View
47376  CVE-2009-0027  The request handler in JBossWS in JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP06 and 4.3 before 4.3.0.CP04 does not properly validate the resource path during a request for a WSDL file with a custom web-service endpoint, which allows remote attackers to read arbitrary XML files via a crafted request.    Medium  2017-01-07  2009-03-21  View
48400  CVE-2009-1090  Directory traversal vulnerability in upload.php in Rapidleech rev.36 and earlier allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the uploaded parameter.    6.8  Medium  2017-01-07  2009-07-21  View
48656  CVE-2009-1371  The CLI_ISCONTAINED macro in libclamav/others.h in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) via a malformed file with UPack encoding.    Medium  2017-01-07  2009-09-16  View

Page 607 of 17672, showing 5 records out of 88360 total, starting on record 3031, ending on 3035

Actions