NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 42967 | CVE-2012-0914 | Cross-site scripting (XSS) vulnerability in display_renderers/panels_renderer_editor.class.php in the admin view in the Panels module 6.x-2.x before 6.x-3.10 and 7.x-3.x before 7.x-3.0 for Drupal allows remote authenticated users with certain privileges to inject arbitrary web script or HTML via the Region title. | 2 | 4.3 | Medium | 2017-01-19 | 2012-01-31 | View | |
| 43223 | CVE-2012-1220 | Cross-site request forgery (CSRF) vulnerability in modules/config/admin_utente.php in GAzie 5.20 and earlier allows remote attackers to hijack the authentication of administrators for requests that change account information via an update action, as demonstrated by changing the password. | 2 | 6.8 | Medium | 2017-01-19 | 2012-02-24 | View | |
| 43479 | CVE-2012-1602 | user.php in NextBBS 0.6 allows remote attackers to bypass authentication and gain administrator access by setting the userkey cookie to 1. | 2 | 7.5 | High | 2017-01-19 | 2012-10-02 | View | |
| 43735 | CVE-2012-1868 | Race condition in the thread-creation implementation in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP3 allows local users to gain privileges via a crafted application, aka "Win32k.sys Race Condition Vulnerability." | 2 | 6.9 | Medium | 2017-01-19 | 2013-03-06 | View | |
| 43991 | CVE-2012-2144 | Session fixation vulnerability in OpenStack Dashboard (Horizon) folsom-1 and 2012.1 allows remote attackers to hijack web sessions via the sessionid cookie. | 2 | 6.8 | Medium | 2017-01-19 | 2012-10-30 | View |
Page 14582 of 17672, showing 5 records out of 88360 total, starting on record 72906, ending on 72910