NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
42482 | CVE-2012-0366 | Cisco Unity Connection before 7.1.3b(Su2) allows remote authenticated users to change the administrative password by leveraging the Help Desk Administrator role, aka Bug ID CSCtd45141. | 2 | 9 | High | 2017-01-19 | 2012-03-01 | View | |
42738 | CVE-2012-0648 | WebKit, as used in Apple iTunes before 10.6, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2012-03-07-1. | 2 | 7.6 | High | 2017-01-19 | 2013-11-02 | View | |
42994 | CVE-2012-0944 | Aptdaemon 0.43 and earlier in Ubuntu 11.04, 11.10, and 12.04 LTS does not authenticate packages when the transaction is not simulated, which allows remote attackers to install arbitrary packages via a man-in-the-middle attack. | 2 | 4.3 | Medium | 2017-01-19 | 2012-06-20 | View | |
43250 | CVE-2012-1253 | Cross-site scripting (XSS) vulnerability in Roundcube Webmail before 0.7, when Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via vectors involving an embedded image attachment. | 2 | 2.6 | Low | 2017-01-19 | 2012-06-28 | View | |
43506 | CVE-2012-1633 | Cross-site request forgery (CSRF) vulnerability in the Password Policy module before 6.x-1.4 and 7.x-1.0 beta3 for Drupal allows remote attackers to hijack the authentication of admistrative users for requests that unblock a user. | 2 | 6.8 | Medium | 2017-01-19 | 2012-09-21 | View |
Page 16772 of 17672, showing 5 records out of 88360 total, starting on record 83856, ending on 83860