Vulnerability index

Browse CVEs

7,769 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
MEDIUM 5.0 CVE-2011-3179 The server process in Novell Messenger 2.1 and 2.2.x before 2.2.1, and Novell GroupWise Messenger 2.04 and earlier, allows remote attackers to read f… Groupwise Messenger after 2.0.4 Fix from $1,6002011-12-08 MEDIUM 5.0 CVE-2011-3653 Mozilla Firefox before 8.0 and Thunderbird before 8.0 on Mac OS X do not properly interact with the GPU memory behavior of a certain driver for Intel… Firefox after 7.0.1 Fix from $1,6002011-11-09 MEDIUM 5.0 CVE-2011-1368 The JavaServer Faces (JSF) application functionality in IBM WebSphere Application Server 8.x before 8.0.0.1 does not properly handle requests, which … Websphere Application Server Mitigation only Fix from $1,6002011-10-29 MEDIUM 5.0 CVE-2011-2042 The Sybase SQL Anywhere database component in Cisco CiscoWorks Common Services 3.x and 4.x before 4.1 allows remote attackers to obtain potentially s… Ciscoworks Common Services Mitigation only Fix from $1,6002011-10-22 MEDIUM 5.0 CVE-2011-2059 The ipv6 component in Cisco IOS before 15.1(4)M1.3 allows remote attackers to conduct fingerprinting attacks and obtain potentially sensitive informa… iOS 15.1+ Fix from $1,6002011-10-22 MEDIUM 5.0 CVE-2011-3242 The Private Browsing feature in Apple Safari before 5.1.1 on Mac OS X does not properly recognize the Always value of the Block Cookies setting, whic… Safari after 5.1 Fix from $1,6002011-10-14 MEDIUM 5.0 CVE-2011-3246 CFNetwork in Apple iOS before 5.0.1 and Mac OS X 10.7 before 10.7.2 does not properly parse URLs, which allows remote attackers to trigger visits to … Mac Os X Mitigation only Fix from $1,6002011-10-14 MEDIUM 5.0 CVE-2011-0231 CFNetwork in Apple Mac OS X before 10.7.2 does not properly follow an intended cookie-storage policy, which makes it easier for remote web servers to… Mac Os X after 10.7.1 Fix from $1,6002011-10-14 MEDIUM 5.0 CVE-2011-3580 IceWarp WebMail in IceWarp Mail Server before 10.3.3 allows remote attackers to obtain configuration information via a direct request to the /server … Mail Server after 10.3.2 Fix from $1,6002011-09-30 MEDIUM 5.0 CVE-2011-3694 The Server Administration Console in NetSaro Enterprise Messenger Server 2.0 allows remote attackers to read application source code by appending a %… Enterprise Messenger Server Mitigation only Fix from $1,6002011-09-27 MEDIUM 5.0 CVE-2011-3820 WSN Software 6.0.6 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path i… Wsn Software Mitigation only Fix from $1,6002011-09-24 MEDIUM 5.0 CVE-2011-3821 xajax 0.6 beta1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in a… Xajax Mitigation only Fix from $1,6002011-09-24 MEDIUM 5.0 CVE-2011-3822 XOOPS 2.5.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an er… Xoops Mitigation only Fix from $1,6002011-09-24 MEDIUM 5.0 CVE-2011-3823 Yamamah 1.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an er… Yamamah Mitigation only Fix from $1,6002011-09-24 MEDIUM 5.0 CVE-2011-3824 Your Own URL Shortener (YOURLS) 1.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the in… Yourls Mitigation only Fix from $1,6002011-09-24 MEDIUM 5.0 CVE-2011-3825 Zend Framework 1.11.3 in Zend Server CE 5.1.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reve… Framework Mitigation only Fix from $1,6002011-09-24 MEDIUM 5.0 CVE-2011-3826 Zikula 1.2.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an e… Zikula Mitigation only Fix from $1,6002011-09-24 MEDIUM 5.0 CVE-2011-3795 Podcast Generator 1.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation pat… Podcast Generator Mitigation only Fix from $1,6002011-09-24 MEDIUM 5.0 CVE-2011-3796 PrestaShop 1.4.0.6 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path i… Prestashop Mitigation only Fix from $1,6002011-09-24 MEDIUM 5.0 CVE-2011-3797 ProjectPier 0.8.0.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path … Projectpier Mitigation only Fix from $1,6002011-09-24 MEDIUM 5.0 CVE-2011-3798 Rapid Leech 2.3-v42-svn322 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installatio… Rapidleech Mitigation only Fix from $1,6002011-09-24 MEDIUM 5.0 CVE-2011-3799 ReOS 2.0.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an err… Reos Mitigation only Fix from $1,6002011-09-24 MEDIUM 5.0 CVE-2011-3800 Serendipity 1.5.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in… Serendipity Mitigation only Fix from $1,6002011-09-24 MEDIUM 5.0 CVE-2011-3801 SimpleTest 1.0.1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in … Simpletest Mitigation only Fix from $1,6002011-09-24 MEDIUM 5.0 CVE-2011-3802 StatusNet 0.9.6 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in a… Statusnet Mitigation only Fix from $1,6002011-09-24 MEDIUM 5.0 CVE-2011-3803 SugarCRM 6.1.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an… Sugarcrm Mitigation only Fix from $1,6002011-09-24 MEDIUM 5.0 CVE-2011-3804 SweetRice 0.7.1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in a… Sweetrice Mitigation only Fix from $1,6002011-09-24 MEDIUM 5.0 CVE-2011-3805 TaskFreak! multi-mysql-0.6 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installatio… Taskfreak\! Multi Mysql Mitigation only Fix from $1,6002011-09-24 MEDIUM 5.0 CVE-2011-3806 TCExam 11.1.015 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in a… Tcexam Mitigation only Fix from $1,6002011-09-24 MEDIUM 5.0 CVE-2011-3807 Textpattern 4.2.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in… Textpattern Mitigation only Fix from $1,6002011-09-24