NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
46603 | CVE-2012-5473 | The Database activity module in Moodle 2.1.x before 2.1.9, 2.2.x before 2.2.6, and 2.3.x before 2.3.3 allows remote authenticated users to read activity entries of a different group"s users via an advanced search. | 2 | 4 | Medium | 2017-01-19 | 2013-06-20 | View | |
46859 | CVE-2012-5822 | The contribution feature in Zamboni does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to use of the Python urllib2 library. | 2 | 5.8 | Medium | 2017-01-19 | 2013-02-07 | View | |
47115 | CVE-2012-6333 | Multiple HVM control operations in Xen 3.4 through 4.2 allow local HVM guest OS administrators to cause a denial of service (physical CPU consumption) via a large input. | 2 | 4.7 | Medium | 2017-01-19 | 2014-04-19 | View | |
47371 | CVE-2009-0022 | Samba 3.2.0 through 3.2.6, when registry shares are enabled, allows remote authenticated users to access the root filesystem via a crafted connection request that specifies a blank share name. | 2 | 6.3 | Medium | 2017-01-07 | 2011-03-07 | View | |
47627 | CVE-2009-0293 | SQL injection vulnerability in profile_view.php in Wazzum Dating Software, possibly 2.0, allows remote attackers to execute arbitrary SQL commands via the userid parameter. | 2 | 7.5 | High | 2017-01-07 | 2009-02-05 | View |
Page 1152 of 17672, showing 5 records out of 88360 total, starting on record 5756, ending on 5760