NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
41713 | CVE-2013-6834 | The ql_eioctl function in sys/dev/qlxgbe/ql_ioctl.c in the kernel in FreeBSD 10 and earlier does not validate a certain size parameter, which allows local users to obtain sensitive information from kernel memory via a crafted ioctl call. | 2 | 4.9 | Medium | 2017-01-18 | 2014-03-04 | View | |
41969 | CVE-2013-7225 | Multiple SQL injection vulnerabilities in app/controllers/home_controller.rb in Fat Free CRM before 0.12.1 allow remote authenticated users to execute arbitrary SQL commands via (1) the homepage timeline feature or (2) the activity feature. | 2 | 6.5 | Medium | 2017-01-18 | 2014-01-03 | View | |
42225 | CVE-2012-0082 | Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 10.1.0.5, 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows remote authenticated users to affect integrity and availability via unknown vectors. | 2 | 5.5 | Medium | 2017-01-19 | 2012-01-30 | View | |
42481 | CVE-2012-0365 | Directory traversal vulnerability in the Local TFTP file-upload application on Cisco SRP 520 series devices with firmware before 1.1.26 and SRP 520W-U and 540 series devices with firmware before 1.2.4 allows remote authenticated users to upload software to arbitrary directories via unspecified vectors, aka Bug ID CSCtw56009. | 2 | 9 | High | 2017-01-19 | 2012-03-06 | View | |
42737 | CVE-2012-0647 | WebKit in Apple Safari before 5.1.4 does not properly handle redirects in conjunction with HTTP authentication, which might allow remote web servers to capture credentials by logging the Authorization HTTP header. | 2 | 5 | Medium | 2017-01-19 | 2012-03-13 | View |
Page 16352 of 17672, showing 5 records out of 88360 total, starting on record 81756, ending on 81760