Vulnerability index

Browse CVEs

7,769 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
Groupwise Messenger MEDIUM 5.0
CVE-2011-3179

The server process in Novell Messenger 2.1 and 2.2.x before 2.2.1, and Novell GroupWise Messenger 2.04 and earlier, allows remote attackers to read f…

Fix: after 2.0.4
Fix from $1,600 2011-12-08
Firefox MEDIUM 5.0
CVE-2011-3653

Mozilla Firefox before 8.0 and Thunderbird before 8.0 on Mac OS X do not properly interact with the GPU memory behavior of a certain driver for Intel…

Fix: after 7.0.1
Fix from $1,600 2011-11-09
Websphere Application Server MEDIUM 5.0
CVE-2011-1368

The JavaServer Faces (JSF) application functionality in IBM WebSphere Application Server 8.x before 8.0.0.1 does not properly handle requests, which …

Mitigation only
Fix from $1,600 2011-10-29
Ciscoworks Common Services MEDIUM 5.0
CVE-2011-2042

The Sybase SQL Anywhere database component in Cisco CiscoWorks Common Services 3.x and 4.x before 4.1 allows remote attackers to obtain potentially s…

Mitigation only
Fix from $1,600 2011-10-22
iOS MEDIUM 5.0
CVE-2011-2059

The ipv6 component in Cisco IOS before 15.1(4)M1.3 allows remote attackers to conduct fingerprinting attacks and obtain potentially sensitive informa…

Fix: 15.1+
Fix from $1,600 2011-10-22
Safari MEDIUM 5.0
CVE-2011-3242

The Private Browsing feature in Apple Safari before 5.1.1 on Mac OS X does not properly recognize the Always value of the Block Cookies setting, whic…

Fix: after 5.1
Fix from $1,600 2011-10-14
Mac Os X MEDIUM 5.0
CVE-2011-3246

CFNetwork in Apple iOS before 5.0.1 and Mac OS X 10.7 before 10.7.2 does not properly parse URLs, which allows remote attackers to trigger visits to …

Mitigation only
Fix from $1,600 2011-10-14
Mac Os X MEDIUM 5.0
CVE-2011-0231

CFNetwork in Apple Mac OS X before 10.7.2 does not properly follow an intended cookie-storage policy, which makes it easier for remote web servers to…

Fix: after 10.7.1
Fix from $1,600 2011-10-14
Mail Server MEDIUM 5.0
CVE-2011-3580

IceWarp WebMail in IceWarp Mail Server before 10.3.3 allows remote attackers to obtain configuration information via a direct request to the /server …

Fix: after 10.3.2
Fix from $1,600 2011-09-30
Enterprise Messenger Server MEDIUM 5.0
CVE-2011-3694

The Server Administration Console in NetSaro Enterprise Messenger Server 2.0 allows remote attackers to read application source code by appending a %…

Mitigation only
Fix from $1,600 2011-09-27
Wsn Software MEDIUM 5.0
CVE-2011-3820

WSN Software 6.0.6 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path i…

Mitigation only
Fix from $1,600 2011-09-24
Xajax MEDIUM 5.0
CVE-2011-3821

xajax 0.6 beta1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in a…

Mitigation only
Fix from $1,600 2011-09-24
Xoops MEDIUM 5.0
CVE-2011-3822

XOOPS 2.5.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an er…

Mitigation only
Fix from $1,600 2011-09-24
Yamamah MEDIUM 5.0
CVE-2011-3823

Yamamah 1.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an er…

Mitigation only
Fix from $1,600 2011-09-24
Yourls MEDIUM 5.0
CVE-2011-3824

Your Own URL Shortener (YOURLS) 1.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the in…

Mitigation only
Fix from $1,600 2011-09-24
Framework MEDIUM 5.0
CVE-2011-3825

Zend Framework 1.11.3 in Zend Server CE 5.1.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reve…

Mitigation only
Fix from $1,600 2011-09-24
Zikula MEDIUM 5.0
CVE-2011-3826

Zikula 1.2.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an e…

Mitigation only
Fix from $1,600 2011-09-24
Podcast Generator MEDIUM 5.0
CVE-2011-3795

Podcast Generator 1.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation pat…

Mitigation only
Fix from $1,600 2011-09-24
Prestashop MEDIUM 5.0
CVE-2011-3796

PrestaShop 1.4.0.6 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path i…

Mitigation only
Fix from $1,600 2011-09-24
Projectpier MEDIUM 5.0
CVE-2011-3797

ProjectPier 0.8.0.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path …

Mitigation only
Fix from $1,600 2011-09-24
Rapidleech MEDIUM 5.0
CVE-2011-3798

Rapid Leech 2.3-v42-svn322 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installatio…

Mitigation only
Fix from $1,600 2011-09-24
Reos MEDIUM 5.0
CVE-2011-3799

ReOS 2.0.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an err…

Mitigation only
Fix from $1,600 2011-09-24
Serendipity MEDIUM 5.0
CVE-2011-3800

Serendipity 1.5.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in…

Mitigation only
Fix from $1,600 2011-09-24
Simpletest MEDIUM 5.0
CVE-2011-3801

SimpleTest 1.0.1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in …

Mitigation only
Fix from $1,600 2011-09-24
Statusnet MEDIUM 5.0
CVE-2011-3802

StatusNet 0.9.6 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in a…

Mitigation only
Fix from $1,600 2011-09-24
Sugarcrm MEDIUM 5.0
CVE-2011-3803

SugarCRM 6.1.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an…

Mitigation only
Fix from $1,600 2011-09-24
Sweetrice MEDIUM 5.0
CVE-2011-3804

SweetRice 0.7.1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in a…

Mitigation only
Fix from $1,600 2011-09-24
Taskfreak\! Multi Mysql MEDIUM 5.0
CVE-2011-3805

TaskFreak! multi-mysql-0.6 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installatio…

Mitigation only
Fix from $1,600 2011-09-24
Tcexam MEDIUM 5.0
CVE-2011-3806

TCExam 11.1.015 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in a…

Mitigation only
Fix from $1,600 2011-09-24
Textpattern MEDIUM 5.0
CVE-2011-3807

Textpattern 4.2.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in…

Mitigation only
Fix from $1,600 2011-09-24