NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
45848 | CVE-2012-4465 | Heap-based buffer overflow in the substr function in parsing.c in cgit 0.9.0.3 and earlier allows remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code via an empty username in the "Author" field in a commit. | 2 | 6.5 | Medium | 2017-01-19 | 2013-01-29 | View | |
46104 | CVE-2012-4829 | IBM XIV Storage System Gen3 before 11.2 relies on a default X.509 v3 certificate for authentication, which allows man-in-the-middle attackers to spoof servers by leveraging an inappropriate certificate-trust relationship. | 2 | 4.3 | Medium | 2017-01-19 | 2013-04-16 | View | |
46360 | CVE-2012-5148 | The hyphenation functionality in Google Chrome before 24.0.1312.52 does not properly validate file names, which has unspecified impact and attack vectors. | 2 | 7.5 | High | 2017-01-19 | 2016-10-06 | View | |
46616 | CVE-2012-5488 | python_scripts.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to execute Python code via a crafted URL, related to createObject. | 2 | 5 | Medium | 2017-01-19 | 2014-10-10 | View | |
46872 | CVE-2012-5840 | Use-after-free vulnerability in the nsTextEditorState::PrepareEditor function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-4214. | 2 | 10 | High | 2017-01-19 | 2013-11-02 | View |
Page 1484 of 17672, showing 5 records out of 88360 total, starting on record 7416, ending on 7420