NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 47021 | CVE-2012-6065 | The OM Maximenu module 6.x-1.43 and earlier for Drupal, when the "Title has PHP" option is enabled, allows remote authenticated users with the "Administer OM Maximenu" permission to execute arbitrary PHP code via a "Link Title," a different vulnerability than CVE-2012-5553. | 2 | 4.6 | Medium | 2017-01-19 | 2012-12-04 | View | |
| 47277 | CVE-2012-6596 | Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.3 stores cleartext LDAP bind passwords in authd.log, which allows context-dependent attackers to obtain sensitive information by reading this file, aka Ref ID 35493. | 2 | 5 | Medium | 2017-01-19 | 2013-10-07 | View | |
| 48301 | CVE-2009-0991 | Unspecified vulnerability in the Listener component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote attackers to affect availability via unknown vectors, a different vulnerability than CVE-2009-1970. | 2 | 5 | Medium | 2017-01-07 | 2016-11-23 | View | |
| 49069 | CVE-2009-1803 | FreePBX 2.5.1, and other 2.4.x, 2.5.x, and pre-release 2.6.x versions, generates different error messages for a failed login attempt depending on whether the user account exists, which allows remote attackers to enumerate valid usernames. | 2 | 5 | Medium | 2017-01-07 | 2009-05-29 | View | |
| 49325 | CVE-2009-2063 | Opera, possibly before 9.25, processes a 3xx HTTP CONNECT response before a successful SSL handshake, which allows man-in-the-middle attackers to execute arbitrary web script, in an https site"s context, by modifying this CONNECT response to specify a 302 redirect to an arbitrary https web site. | 2 | 6.8 | Medium | 2017-01-07 | 2012-06-07 | View |
Page 14758 of 17672, showing 5 records out of 88360 total, starting on record 73786, ending on 73790