NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
43710  CVE-2012-1843  Cross-site request forgery (CSRF) vulnerability in saveRestore.htm on the Quantum Scalar i500 tape library with firmware before i7.0.3 (604G.GS00100), also distributed as the Dell ML6000 tape library with firmware before A20-00 (590G.GS00100), allows remote attackers to hijack the authentication of users for requests that execute Linux commands via the fileName parameter, related to a "command-injection vulnerability."    Medium  2017-01-19  2012-11-06  View
43966  CVE-2012-2117  Cross-site scripting (XSS) vulnerability in the Gigya - Social optimization module 6.x before 6.x-3.2 for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2017-01-19  2012-12-18  View
45502  CVE-2012-4024  Stack-based buffer overflow in the get_component function in unsquashfs.c in unsquashfs in Squashfs 4.2 and earlier allows remote attackers to execute arbitrary code via a crafted list file (aka a crafted file for the -ef option). NOTE: probably in most cases, the list file is a trusted file constructed by the program"s user; however, there are some realistic situations in which a list file would be obtained from an untrusted remote source.    6.8  Medium  2017-01-19  2014-02-11  View
45758  CVE-2012-4344  Cross-site scripting (XSS) vulnerability in Ipswitch WhatsUp Gold 15.02 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving the SNMP system name of the attacking host.    4.3  Medium  2017-01-19  2012-11-20  View
46014  CVE-2012-4677  Tunnelblick 3.3beta20 and earlier allows local users to gain privileges by using a crafted Info.plist file to control the gOkIfNotSecure value.    4.4  Medium  2017-01-19  2012-08-27  View

Page 15360 of 17672, showing 5 records out of 88360 total, starting on record 76796, ending on 76800

Actions