NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
46826  CVE-2012-5789  PayPal Payments Standard PHP Library before 20120427 does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to intentional disabling of certificate-validation checks through a "FALSE" value.    5.8  Medium  2017-01-19  2013-02-07  View
47082  CVE-2012-6143  Spoon::Cookie in the Spoon module 0.24 for Perl does not properly use the Storable::thaw function, which allows remote attackers to execute arbitrary code via a crafted request, which is not properly handled when it is deserialized.    7.5  High  2017-01-19  2014-06-05  View
47338  CVE-2012-6691  Multiple cross-site request forgery (CSRF) vulnerabilities in the admin panel in osCMax before 2.5.1 allow remote attackers to hijack the authentication of administrators for requests that conduct SQL injection attacks via the (1) status parameter to admin/stats_monthly_sales.php or (2) country parameter in a process action to admin/create_account_process.php.    6.8  Medium  2017-01-19  2015-07-27  View
47594  CVE-2009-0260  Multiple cross-site scripting (XSS) vulnerabilities in action/AttachFile.py in MoinMoin before 1.8.1 allow remote attackers to inject arbitrary web script or HTML via an AttachFile action to the WikiSandBox component with (1) the rename parameter or (2) the drawing parameter (aka the basename variable).    4.3  Medium  2017-01-07  2016-12-07  View
47850  CVE-2009-0518  VI Client in VMware VirtualCenter before 2.5 Update 4, VMware ESXi 3.5 before Update 4, and VMware ESX 3.5 before Update 4 retains the VirtualCenter Server password in process memory, which might allow local users to obtain this password.    2.1  Low  2017-01-07  2010-08-21  View

Page 15880 of 17672, showing 5 records out of 88360 total, starting on record 79396, ending on 79400

Actions