NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
45582 | CVE-2012-4117 | The fabric-interconnect component in Cisco Unified Computing System (UCS) does not properly verify X.509 certificates, which allows man-in-the-middle attackers to watch SSL KVM video-channel traffic or modify this traffic via a crafted certificate, aka Bug ID CSCtr73033. | 2 | 5.8 | Medium | 2017-01-19 | 2013-10-21 | View | |
45838 | CVE-2012-4455 | openCryptoki 2.4.1 allows local users to create or set world-writable permissions on arbitrary files via a symlink attack on the (1) LCK..opencryptoki or (2) LCK..opencryptoki_stdll file in /var/lock/. | 2 | 6.2 | Medium | 2017-01-19 | 2013-04-10 | View | |
46094 | CVE-2012-4816 | IBM Rational Automation Framework (RAF) 3.x through 3.0.0.5 allows remote attackers to bypass intended Env Gen Wizard (aka Environment Generation Wizard) access restrictions by visiting context roots in HTTP sessions on port 8080. | 2 | 7.5 | High | 2017-01-19 | 2013-01-11 | View | |
46350 | CVE-2012-5138 | Google Chrome before 23.0.1271.95 does not properly handle file paths, which has unspecified impact and attack vectors. | 2 | 10 | High | 2017-01-19 | 2016-09-28 | View | |
46606 | CVE-2012-5478 | The AuthorizationInterceptor in JBoss Enterprise Application Platform (EAP) before 5.2.0, Web Platform (EWP) before 5.2.0, BRMS Platform before 5.3.1, and SOA Platform before 5.3.1 does not properly restrict access, which allows remote authenticated users to bypass intended role restrictions and perform arbitrary JMX operations via unspecified vectors. | 2 | 4.9 | Medium | 2017-01-19 | 2015-01-17 | View |
Page 1355 of 17672, showing 5 records out of 88360 total, starting on record 6771, ending on 6775