NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 44254 | CVE-2012-2455 | Advanced Productivity Software DTE Axiom before 12.3.3 does not validate the registration ID, which allows remote attackers to bypass authentication and read or modify data about users, customers, and projects via unspecified vectors. | 2 | 6.4 | Medium | 2017-01-19 | 2012-11-12 | View | |
| 44510 | CVE-2012-2814 | Buffer overflow in the exif_entry_format_value function in exif-entry.c in the EXIF Tag Parsing Library (aka libexif) 0.6.20 allows remote attackers to cause a denial of service or possibly execute arbitrary code via crafted EXIF tags in an image. | 2 | 7.5 | High | 2017-01-19 | 2016-11-28 | View | |
| 44766 | CVE-2012-3140 | Unspecified vulnerability in the Oracle Agile PLM For Process component in Oracle Supply Chain Products Suite 6.0.0.6.3 and 6.1.0.1.14 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Supply Chain Relationship Management. | 2 | 5.5 | Medium | 2017-01-19 | 2013-10-10 | View | |
| 45022 | CVE-2012-3427 | EC2 Amazon Machine Image (AMI) in JBoss Enterprise Application Platform (EAP) 5.1.2 uses 755 permissions for /var/cache/jboss-ec2-eap/, which allows local users to read sensitive information such as Amazon Web Services (AWS) credentials by reading files in the directory. | 2 | 2.1 | Low | 2017-01-19 | 2014-02-04 | View | |
| 45278 | CVE-2012-3695 | Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 6.0 allows remote attackers to inject arbitrary web script or HTML by leveraging improper URL canonicalization during the handling of the location.href property. | 2 | 4.3 | Medium | 2017-01-19 | 2013-03-21 | View |
Page 15412 of 17672, showing 5 records out of 88360 total, starting on record 77056, ending on 77060