NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
42967  CVE-2012-0914  Cross-site scripting (XSS) vulnerability in display_renderers/panels_renderer_editor.class.php in the admin view in the Panels module 6.x-2.x before 6.x-3.10 and 7.x-3.x before 7.x-3.0 for Drupal allows remote authenticated users with certain privileges to inject arbitrary web script or HTML via the Region title.    4.3  Medium  2017-01-19  2012-01-31  View
43223  CVE-2012-1220  Cross-site request forgery (CSRF) vulnerability in modules/config/admin_utente.php in GAzie 5.20 and earlier allows remote attackers to hijack the authentication of administrators for requests that change account information via an update action, as demonstrated by changing the password.    6.8  Medium  2017-01-19  2012-02-24  View
43479  CVE-2012-1602  user.php in NextBBS 0.6 allows remote attackers to bypass authentication and gain administrator access by setting the userkey cookie to 1.    7.5  High  2017-01-19  2012-10-02  View
43735  CVE-2012-1868  Race condition in the thread-creation implementation in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP3 allows local users to gain privileges via a crafted application, aka "Win32k.sys Race Condition Vulnerability."    6.9  Medium  2017-01-19  2013-03-06  View
43991  CVE-2012-2144  Session fixation vulnerability in OpenStack Dashboard (Horizon) folsom-1 and 2012.1 allows remote attackers to hijack web sessions via the sessionid cookie.    6.8  Medium  2017-01-19  2012-10-30  View

Page 14582 of 17672, showing 5 records out of 88360 total, starting on record 72906, ending on 72910

Actions