NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
45837 | CVE-2012-4454 | openCryptoki before 2.4.1, when using spinlocks, allows local users to create or set world-writable permissions on arbitrary files via a symlink attack on the (1) .pkapi_xpk or (2) .pkcs11spinloc file in /tmp. | 2 | 2.9 | Low | 2017-01-19 | 2013-04-10 | View | |
46093 | CVE-2012-4792 | Use-after-free vulnerability in Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to an object that (1) was not properly allocated or (2) is deleted, as demonstrated by a CDwnBindInfo object, and exploited in the wild in December 2012. | 2 | 9.3 | High | 2017-01-19 | 2013-11-02 | View | |
46349 | CVE-2012-5137 | Use-after-free vulnerability in Google Chrome before 23.0.1271.95 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the Media Source API. | 2 | 10 | High | 2017-01-19 | 2016-09-28 | View | |
46605 | CVE-2012-5477 | The smart proxy in Foreman before 1.1 uses a umask set to 0, which allows local users to modify files created by the daemon via unspecified vectors. | 2 | 3.6 | Low | 2017-01-19 | 2014-05-08 | View | |
46861 | CVE-2012-5824 | Trillian 5.1.0.19 does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, a different vulnerability than CVE-2009-4831. | 2 | 5.8 | Medium | 2017-01-19 | 2013-01-31 | View |
Page 1287 of 17672, showing 5 records out of 88360 total, starting on record 6431, ending on 6435