NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
46058 | CVE-2012-4734 | Request Tracker (RT) 3.8.x before 3.8.15 and 4.0.x before 4.0.8 allows remote attackers to conduct a "confused deputy" attack to bypass the CSRF warning protection mechanism and cause victims to "modify arbitrary state" via unknown vectors related to a crafted link. | 2 | 5 | Medium | 2017-01-19 | 2013-03-01 | View | |
46314 | CVE-2012-5099 | Cross-site scripting (XSS) vulnerability in list.php in PHPB2B 4.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the q parameter in a search action. | 2 | 4.3 | Medium | 2017-01-19 | 2012-09-24 | View | |
46570 | CVE-2012-5386 | Directory traversal vulnerability in index.php in phpPaleo 4.8b180 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the phppaleo4_lang cookie, a different vulnerability than CVE-2012-1671. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 6.8 | Medium | 2017-01-19 | 2012-10-22 | View | |
46826 | CVE-2012-5789 | PayPal Payments Standard PHP Library before 20120427 does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to intentional disabling of certificate-validation checks through a "FALSE" value. | 2 | 5.8 | Medium | 2017-01-19 | 2013-02-07 | View | |
47082 | CVE-2012-6143 | Spoon::Cookie in the Spoon module 0.24 for Perl does not properly use the Storable::thaw function, which allows remote attackers to execute arbitrary code via a crafted request, which is not properly handled when it is deserialized. | 2 | 7.5 | High | 2017-01-19 | 2014-06-05 | View |
Page 16388 of 17672, showing 5 records out of 88360 total, starting on record 81936, ending on 81940