NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
43233 | CVE-2012-1236 | Multiple cross-site request forgery (CSRF) vulnerabilities in Janetter before 3.3.0.0 (aka 3.3.0) allow remote attackers to hijack the authentication of arbitrary users for requests that (1) tweet, (2) upload an image file, or (3) execute arbitrary commands. | 2 | 6.8 | Medium | 2017-01-19 | 2012-06-08 | View | |
44001 | CVE-2012-2155 | Cross-site request forgery (CSRF) vulnerability in the CDN2 Video module 6.x for Drupal allows remote attackers to hijack the authentication of unspecified victims via unknown vectors. | 2 | 6.8 | Medium | 2017-01-19 | 2012-08-15 | View | |
45281 | CVE-2012-3698 | Apple Xcode before 4.4 does not properly compose a designated requirement (DR) during signing of programs that lack bundle identifiers, which allows remote attackers to read keychain entries via a crafted app, as demonstrated by the keychain entries of a (1) helper tool or (2) command-line tool. | 2 | 5 | Medium | 2017-01-19 | 2012-07-31 | View | |
45537 | CVE-2012-4069 | Dir2web 3.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database via a direct request for system/db/website.db. | 2 | 5 | Medium | 2017-01-19 | 2012-08-13 | View | |
45793 | CVE-2012-4401 | Moodle 2.2.x before 2.2.5 and 2.3.x before 2.3.2 allows remote authenticated users to bypass intended capability restrictions and perform certain topic changes by leveraging course-editing capabilities. | 2 | 4 | Medium | 2017-01-19 | 2012-09-19 | View |
Page 16597 of 17672, showing 5 records out of 88360 total, starting on record 82981, ending on 82985