NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
46825  CVE-2012-5788  The PayPal IPN utility does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to use of the PHP fsockopen function.    5.8  Medium  2017-01-19  2012-11-19  View
47081  CVE-2012-6142  Session::Cookie in the HTML::EP module 0.2011 for Perl does not properly use the Storable::thaw function, which allows remote attackers to execute arbitrary code via a crafted request, which is not properly handled when it is deserialized.    7.5  High  2017-01-19  2014-06-05  View
47337  CVE-2012-6689  The netlink_sendmsg function in net/netlink/af_netlink.c in the Linux kernel before 3.5.5 does not validate the dst_pid field, which allows local users to have an unspecified impact by spoofing Netlink messages.    7.2  High  2017-01-19  2016-11-28  View
16618  CVE-2016-0105  Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Microsoft Browser Memory Corruption Vulnerability," a different vulnerability than CVE-2016-0107, CVE-2016-0111, CVE-2016-0112, and CVE-2016-0113.    7.6  High  2017-01-19  2016-12-02  View
16874  CVE-2016-0458  Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect availability via vectors related to Kernel DAX.    Medium  2017-01-19  2016-12-07  View

Page 14871 of 17672, showing 5 records out of 88360 total, starting on record 74351, ending on 74355

Actions