NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 43230 | CVE-2012-1227 | Multiple cross-site request forgery (CSRF) vulnerabilities in admin.php in pluck 4.7 allow remote attackers to hijack the authentication of admins for requests that (1) modify the admin email address or (2) modify the blog title via a settings action; (3) add a page via an editpage action, or (4) add a categorie via the blog module. | 2 | 6.8 | Medium | 2017-01-19 | 2012-02-24 | View | |
| 43486 | CVE-2012-1610 | Integer overflow in the GetEXIFProperty function in magick/property.c in ImageMagick before 6.7.6-4 allows remote attackers to cause a denial of service (out-of-bounds read) via a large component count for certain EXIF tags in a JPEG image. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0259. | 2 | 4.3 | Medium | 2017-01-19 | 2013-10-10 | View | |
| 43742 | CVE-2012-1877 | Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing a deleted object, aka "Title Element Change Remote Code Execution Vulnerability." | 2 | 9.3 | High | 2017-01-19 | 2013-03-06 | View | |
| 43998 | CVE-2012-2152 | Stack-based buffer overflow in the get_packet method in socket.c in dhcpcd 3.2.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long packet. | 2 | 7.5 | High | 2017-01-19 | 2012-11-06 | View | |
| 44254 | CVE-2012-2455 | Advanced Productivity Software DTE Axiom before 12.3.3 does not validate the registration ID, which allows remote attackers to bypass authentication and read or modify data about users, customers, and projects via unspecified vectors. | 2 | 6.4 | Medium | 2017-01-19 | 2012-11-12 | View |
Page 14653 of 17672, showing 5 records out of 88360 total, starting on record 73261, ending on 73265