NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
46287  CVE-2012-5072  Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 7 and earlier, and 6 Update 35 and earlier, allows remote attackers to affect confidentiality via unknown vectors related to Security.    Medium  2017-01-19  2014-10-04  View
46543  CVE-2012-5348  SQL injection vulnerability in MangosWeb Enhanced 3.0.3 allows remote attackers to execute arbitrary SQL commands via the login parameter in a login action to index.php.    6.8  Medium  2017-01-19  2012-10-10  View
46799  CVE-2012-5705  Cross-site scripting (XSS) vulnerability in the settings page (admin/settings/hotblocks) in the Hotblocks module 6.x-1.x before 6.x-1.8 for Drupal allows remote authenticated users with the "administer hotblocks" permission to inject arbitrary web script or HTML via the "block names."    2.1  Low  2017-01-19  2012-11-02  View
47055  CVE-2012-6107  Apache Axis2/C does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.    4.3  Medium  2017-01-19  2014-09-30  View
47311  CVE-2012-6635  wp-admin/includes/class-wp-posts-list-table.php in WordPress before 3.3.3 does not properly restrict excerpt-view access, which allows remote authenticated users to obtain sensitive information by visiting a draft.    Medium  2017-01-19  2014-02-24  View

Page 14749 of 17672, showing 5 records out of 88360 total, starting on record 73741, ending on 73745

Actions