NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
45826  CVE-2012-4437  Cross-site scripting (XSS) vulnerability in the SmartyException class in Smarty (aka smarty-php) before 3.1.12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors that trigger a Smarty exception.    4.3  Medium  2017-01-19  2015-11-16  View
46082  CVE-2012-4772  SQL injection vulnerability in register/ in Subrion CMS before 2.2.3 allows remote attackers to execute arbitrary SQL commands via the plan_id parameter.    7.5  High  2017-01-19  2013-06-04  View
46338  CVE-2012-5126  Use-after-free vulnerability in Google Chrome before 23.0.1271.64 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of plug-in placeholders.    7.5  High  2017-01-19  2016-09-28  View
46594  CVE-2012-5456  The Zoner AntiVirus Free application for Android does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, as demonstrated by a server used for updating virus signature files.    4.3  Medium  2017-01-19  2015-11-04  View
46850  CVE-2012-5813  The Android_Pusher library for Android does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.    5.8  Medium  2017-01-19  2013-02-07  View

Page 166 of 17672, showing 5 records out of 88360 total, starting on record 826, ending on 830

Actions