NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 42445 | CVE-2012-0314 | Multiple cross-site request forgery (CSRF) vulnerabilities on the eAccess Pocket WiFi (aka GP02) router before 2.00 with firmware 11.203.11.05.168 and earlier allow remote attackers to hijack the authentication of administrators for requests that (1) initialize settings or (2) reboot the device. | 2 | 6.8 | Medium | 2017-01-19 | 2012-02-08 | View | |
| 42957 | CVE-2012-0903 | Multiple cross-site scripting (XSS) vulnerabilities in Zimbra Desktop 7.1.2 b10978 allow remote attackers to inject arbitrary web script or HTML via the (1) Username or (2) MailBox Name. | 2 | 4.3 | Medium | 2017-01-19 | 2012-01-23 | View | |
| 43469 | CVE-2012-1591 | The image module in Drupal 7.x before 7.14 does not properly check permissions when caching derivative image styles of private images, which allows remote attackers to read private image styles. | 2 | 5 | Medium | 2017-01-19 | 2013-12-12 | View | |
| 43725 | CVE-2012-1858 | The toStaticHTML API (aka the SafeHTML component) in Microsoft Internet Explorer 8 and 9, Communicator 2007 R2, and Lync 2010 and 2010 Attendee does not properly handle event attributes and script, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document, aka "HTML Sanitization Vulnerability." | 2 | 4.3 | Medium | 2017-01-19 | 2013-03-06 | View | |
| 43981 | CVE-2012-2133 | Use-after-free vulnerability in the Linux kernel before 3.3.6, when huge pages are enabled, allows local users to cause a denial of service (system crash) or possibly gain privileges by interacting with a hugetlbfs filesystem, as demonstrated by a umount operation that triggers improper handling of quota data. | 2 | 4 | Medium | 2017-01-19 | 2012-08-13 | View |
Page 15883 of 17672, showing 5 records out of 88360 total, starting on record 79411, ending on 79415