Latest CVE Feed
-
8.1
HIGHCVE-2012-0063
Insecure plugin update mechanism in tucan through 0.3.10 could allow remote attackers to perform man-in-the-middle attacks and execute arbitrary code ith the permissions of the user running tucan.... Read more
Affected Products : tucan- EPSS Score: %2.43
- Published: Feb. 21, 2020
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2012-0055
OverlayFS in the Linux kernel before 3.0.0-16.28, as used in Ubuntu 10.0.4 LTS and 11.10, is missing inode security checks which could allow attackers to bypass security restrictions and perform unauthorized actions.... Read more
- EPSS Score: %0.39
- Published: Feb. 19, 2020
- Modified: Nov. 21, 2024
-
7.4
HIGHCVE-2012-0051
Tahoe-LAFS 1.9.0 fails to ensure integrity which allows remote attackers to corrupt mutable files or directories upon retrieval.... Read more
- EPSS Score: %1.36
- Published: Nov. 07, 2019
- Modified: Nov. 21, 2024
-
4.3
MEDIUMCVE-2012-0049
OpenTTD before 1.1.5 contains a Denial of Service (slow read attack) that prevents users from joining the server.... Read more
- EPSS Score: %0.62
- Published: Nov. 07, 2019
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2012-0046
mediawiki allows deleted text to be exposed... Read more
Affected Products : mediawiki- EPSS Score: %0.44
- Published: Oct. 29, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2011-5331
Distributed Ruby (aka DRuby) 1.8 mishandles instance_eval.... Read more
Affected Products : distributed_ruby- EPSS Score: %1.29
- Published: Nov. 18, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2011-5330
Distributed Ruby (aka DRuby) 1.8 mishandles the sending of syscalls.... Read more
Affected Products : distributed_ruby- EPSS Score: %0.38
- Published: Nov. 18, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2011-5329
The redirection plugin before 2.2.9 for WordPress has XSS in the admin menu, a different issue than CVE-2011-4562.... Read more
Affected Products : redirection- EPSS Score: %0.19
- Published: Aug. 28, 2019
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2011-5328
The user-access-manager plugin before 1.2 for WordPress has CSRF.... Read more
Affected Products : user_access_manager- EPSS Score: %0.11
- Published: Aug. 20, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2011-5327
In the Linux kernel before 3.1, an off by one in the drivers/target/loopback/tcm_loop.c tcm_loop_make_naa_tpg() function could result in at least memory corruption.... Read more
Affected Products : linux_kernel- EPSS Score: %0.62
- Published: Jul. 27, 2019
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2011-5282
mIRC prior to 7.22 has a message leak because chopping of outbound messages is mishandled.... Read more
Affected Products : mirc- EPSS Score: %0.24
- Published: Jan. 21, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2011-5271
Pacemaker before 1.1.6 configure script creates temporary files insecurely... Read more
Affected Products : pacemaker- EPSS Score: %0.41
- Published: Nov. 12, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2011-5266
Imperva SecureSphere Web Application Firewall (WAF) before 12-august-2010 allows SQL injection filter bypass.... Read more
Affected Products : securesphere_web_application_firewall- EPSS Score: %0.26
- Published: Jan. 08, 2020
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2011-5250
Snare for Linux before 1.7.0 has CSRF in the web interface.... Read more
Affected Products : snare- EPSS Score: %0.17
- Published: Jan. 08, 2020
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2011-5247
Snare for Linux before 1.7.0 has password disclosure because the rendered page contains the field RemotePassword.... Read more
Affected Products : snare- EPSS Score: %0.58
- Published: Jan. 08, 2020
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2011-5020
An SQL Injection vulnerability exists in the ID parameter in Online TV Database 2011.... Read more
Affected Products : online_tv_database- EPSS Score: %0.26
- Published: Jan. 10, 2020
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2011-5018
Koala Framework before 2011-11-21 has XSS via the request_uri parameter.... Read more
Affected Products : koala_framework- EPSS Score: %0.30
- Published: Jan. 08, 2020
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2011-4973
Authentication bypass vulnerability in mod_nss 1.0.8 allows remote attackers to assume the identity of a valid user by using their certificate and entering 'password' as the password.... Read more
Affected Products : mod_nss- EPSS Score: %0.15
- Published: Feb. 15, 2018
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2011-4972
hook_file_download in the CKEditor module 7.x-1.4 for Drupal does not properly restrict access to private files, which allows remote attackers to read private files via a direct request.... Read more
Affected Products : ckeditor- EPSS Score: %0.91
- Published: Nov. 13, 2019
- Modified: Nov. 21, 2024
-
5.8
MEDIUMCVE-2011-4968
nginx http proxy module does not verify peer identity of https origin server which could facilitate man-in-the-middle attack (MITM)... Read more
- EPSS Score: %0.62
- Published: Nov. 19, 2019
- Modified: Nov. 21, 2024