NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 42479 | CVE-2012-0363 | The web interface on Cisco SRP 520 series devices with firmware before 1.1.26 and SRP 520W-U and 540 series devices with firmware before 1.2.4 allows remote authenticated users to execute arbitrary commands via unspecified vectors, related to a "command injection vulnerability," aka Bug ID CSCtt46871. | 2 | 9 | High | 2017-01-19 | 2012-03-06 | View | |
| 42735 | CVE-2012-0645 | Siri in Apple iOS before 5.1 does not properly restrict the ability of Mail.app to handle voice commands, which allows physically proximate attackers to bypass the locked state via a command that forwards an active e-mail message to an arbitrary recipient. | 2 | 1.2 | Low | 2017-01-19 | 2012-03-09 | View | |
| 42991 | CVE-2012-0939 | Multiple SQL injection vulnerabilities in TestLink 1.8.5b and earlier allow remote authenticated users with the Requirement view permission to execute arbitrary SQL commands via the req_spec_id parameter to (1) reqSpecAnalyse.php, (2) reqSpecPrint.php, or (3) reqSpecView.php in requirements/. NOTE: some of these details are obtained from third party information. | 2 | 6.5 | Medium | 2017-01-19 | 2014-08-14 | View | |
| 43247 | CVE-2012-1250 | Logitec LAN-W300N/R routers with firmware before 2.27 do not properly restrict login access, which allows remote attackers to obtain administrative privileges and modify settings via vectors related to PPPoE authentication. | 2 | 10 | High | 2017-01-19 | 2013-01-03 | View | |
| 43503 | CVE-2012-1630 | Cross-site scripting (XSS) vulnerability in the Taxonomy Navigator module for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via unspecified vectors. | 2 | 2.1 | Low | 2017-01-19 | 2012-09-21 | View |
Page 14486 of 17672, showing 5 records out of 88360 total, starting on record 72426, ending on 72430