NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
46608 | CVE-2012-5480 | The Database activity module in Moodle 2.1.x before 2.1.9, 2.2.x before 2.2.6, and 2.3.x before 2.3.3 allows remote attackers to bypass intended restrictions on reading other participants" entries via an advanced search. | 2 | 6.4 | Medium | 2017-01-19 | 2013-06-20 | View | |
47120 | CVE-2012-6339 | Multiple cross-site scripting (XSS) vulnerabilities in the administrative web interface in Cerberus FTP Server before 5.0.6.0 allow (1) remote attackers to inject arbitrary web script or HTML via a log entry that is not properly handled within the Log Manager component, and might allow (2) remote authenticated administrators to inject arbitrary web script or HTML via a Messages field to the servermanager program. | 2 | 4.3 | Medium | 2017-01-19 | 2012-12-31 | View | |
47376 | CVE-2009-0027 | The request handler in JBossWS in JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP06 and 4.3 before 4.3.0.CP04 does not properly validate the resource path during a request for a WSDL file with a custom web-service endpoint, which allows remote attackers to read arbitrary XML files via a crafted request. | 2 | 5 | Medium | 2017-01-07 | 2009-03-21 | View | |
48400 | CVE-2009-1090 | Directory traversal vulnerability in upload.php in Rapidleech rev.36 and earlier allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the uploaded parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2009-07-21 | View | |
48656 | CVE-2009-1371 | The CLI_ISCONTAINED macro in libclamav/others.h in ClamAV before 0.95.1 allows remote attackers to cause a denial of service (application crash) via a malformed file with UPack encoding. | 2 | 5 | Medium | 2017-01-07 | 2009-09-16 | View |
Page 607 of 17672, showing 5 records out of 88360 total, starting on record 3031, ending on 3035